Educause Security Discussion mailing list archives

Re: Any experience with LogRhythm appliances?.....or similar "log mgmt" products?


From: Walter Petruska <wpetruska () USFCA EDU>
Date: Mon, 14 Jun 2010 13:17:35 -0700

We're using AlertLogic which operates as a SaaS model, with on-site
collection appliances.

The basic features, searching, reports, correlation, alerts etc. are there-
plus the fact that it gets our logs off-site for additional protection.

Very competitive pricing for our needs- and certainly much easier than the
proliferation of log repositories we used to have.
The SaaS model removes the high up-front capital costs and puts maintenance
and patching the system into their bucket of responsibilities.


Walter Petruska, CISSP, CISA, CGEIT
Information Security Officer
University of San Francisco

-----Original Message-----
From: The EDUCAUSE Security Constituent Group Listserv
[mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of David Grisham
Sent: Monday, June 14, 2010 11:34 AM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: Re: [SECURITY] Any experience with LogRhythm appliances?.....or
similar "log mgmt" products?

We just started an evaluation of LogRhythm and have also talked with RSA
about envision to evaluate. Looking forward to hearing from others who went
through the same process. We'll have more information in 30 days or so.
Cheers.-grish
David Grisham
Manager of IT Security
UNM Hospitals

Christopher Jones <Christopher.Jones () UFV CA> 6/14/2010 11:52 AM

We have recently implemented enVision from RSA.  So far, so good.  If you
are interested in more details, feel free to contact me offline.

Christopher Jones
IT Security Administrator
University of the Fraser Valley

"SCHALIP, MICHAEL" <mschalip () CNM EDU> 06/10/2010 7:20 AM >>>

Hi Folks*

Our cybersecurity folks are looking at log management appliances, and I'm
wondering:

1.       How many of you out there actually have/use log management
appliances or have built home-grown log management capabilities?
2.       What kind of systems/appliances are you using?
3.       Has anyone reviewed, bought, or discarded, "LogRhythm"?

Thanks in advance*..

Michael



--
This message has been scanned for viruses and dangerous content by
MailScanner ( http://www.mailscanner.info/ ), and is believed to be clean.

Attachment: smime.p7s
Description:


Current thread: