IDS mailing list archives
RE: syslogs for windows
From: "Bill Stout" <bill.stout () greenborder com>
Date: Tue, 2 May 2006 12:50:11 -0700
I agree. Winlogd on the servers, and syslogd on Linux/FreeBSD as the central log repository. http://www.edoceo.com/products/winlogd.php Here's another option for a Windows syslog server (I haven't tried it): http://www.balabit.com/products/syslog_ng/ Bill Stout www.greenborder.com -----Original Message----- From: Packet Man [mailto:packetman () altsec info] Sent: Friday, April 28, 2006 5:22 PM To: Felipe Kaufmann Cc: focus-ids () securityfocus com Subject: Re: syslogs for windows Felipe Kaufmann wrote:
Hi there, I'm in need of a syslog server running on Windows, in order to gather syslog messages from UNIX hosts. I also want to parse those messages with some kind of rule system and, if necessary, forward critical
Check out Snare: http://www.intersectalliance.com/snareserver/index.html Although, I would prefer running the central logserver on Linux or BSD for higher security. -- Excellence in InfoSec and Linux http://www.altsec.info ------------------------------------------------------------------------ Test Your IDS Is your IDS deployed correctly? Find out quickly and easily by testing it with real-world attacks from CORE IMPACT. Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 to learn more. ------------------------------------------------------------------------ ------------------------------------------------------------------------ Test Your IDS Is your IDS deployed correctly? Find out quickly and easily by testing it with real-world attacks from CORE IMPACT. Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 to learn more. ------------------------------------------------------------------------
Current thread:
- Re: syslogs for windows Packet Man (May 01)
- <Possible follow-ups>
- RE: syslogs for windows Bill Stout (May 02)
- RE: syslogs for windows Greg Poirier (May 03)
- RE: syslogs for windows Ambrose, Geffrey (Com US) (May 03)