Security Basics mailing list archives
RE: Event Log Monitor Program
From: "Petter Bruland" <pbruland () fcglv com>
Date: Thu, 20 Sep 2007 15:01:59 -0700
If you have the money.... (I know you are looking for an OSS/freeware, but but but) take a look at Splunk. They have two different licensing models. One if you log more than 500 MB of data (I think), then you need to purchase a license. And if you log less than 500 MB of data, it's free although some features are missing. Once I get an IT budget again, I'll try to get the pay version, as it's the best log analysis app I have ever seen. Not only can you do Event viewer logs, it can also do IIS logs, Syslog etc. We're in the housing market... and currently that's not so hot :-( And the alerting feature is very cool, where you can setup rules to email you if a certain event is logged (guess the GFI does that too sort of). Anyway, that's my two cents. Hopefully someone else responds and tells us that they know of a much better product for free :-) -P -----Original Message----- From: listbounce () securityfocus com [mailto:listbounce () securityfocus com] On Behalf Of Adam Savage Sent: Thursday, September 20, 2007 12:11 PM To: security-basics () securityfocus com Subject: Event Log Monitor Program I'm looking for a good event log program that can consolidate all my event logs from my servers into one location. Then I can report on them and such. We purchased GFI Security Event Log Monitor but we find the program cumbersome at best and doesn't give you any insight on some of the event messages that are produced. I'd like to know if there is a freeware/opensource solution. I know GFI has recently come out with the Successor to SELM called EventsManager but we'd like to look into some other products that are out there first. Any replies would be greatly appreciated. Thank you, Adam
Current thread:
- Event Log Monitor Program Adam Savage (Sep 20)
- Re: Event Log Monitor Program c0unter14 (Sep 20)
- RE: Event Log Monitor Program Petter Bruland (Sep 20)
- Re: Event Log Monitor Program Kurt Buff (Sep 20)
- Re: Event Log Monitor Program scott (Sep 21)
- RE: Event Log Monitor Program Roger Onken (Sep 21)
- Message not available
- Fwd: Event Log Monitor Program kevin fielder (Sep 21)
- File Permission Audit Tool - Windows Al Cooper (Sep 25)
- Re: File Permission Audit Tool - Windows Kurt Buff (Sep 26)
- RE: File Permission Audit Tool - Windows Roger A. Grimes (Sep 26)
- Re: File Permission Audit Tool - Windows Nikhil Wagholikar (Sep 26)
- RE: File Permission Audit Tool - Windows McMahon, Thomas J. (Sep 26)
- RE: File Permission Audit Tool - Windows Steve Johnston (Sep 26)
- Message not available