Security Basics mailing list archives

Re: Log management software for Windows


From: "Jack Foust" <lists () altoonalibrary org>
Date: Fri, 17 Oct 2003 13:20:04 -0400

In addition to Snare there is also the eventlog to syslog utility Purdue
coded.
It works out pretty well for me.
https://engineering.purdue.edu/ECN/Resources/Documents/UNIX/evtsys/



----- Original Message ----- 
From: "Tucker, Jason" <JTucker () libertymgt com>
To: <KCB () KCBurns com>; <security-basics () securityfocus com>
Sent: Friday, October 17, 2003 10:56 AM
Subject: RE: Log management software for Windows


Also another Kiwi syslog user here, works great for us.

For our NT/2000 servers, we use a piece of freeware called Snare.  It
converts NT event log entries to syslog format in real-time and then
forwards it on to a syslog server, as well as some other cool things.

http://www.intersectalliance.com/projects/index.html


-----Original Message-----
From: Ing. Christian Moldes (AdvanceTeam S.R.L.)
[mailto:christian.moldes () advanceteam com bo]
Sent: Thursday, October 16, 2003 6:58 PM
To: KCB () KCBurns com; security-basics () securityfocus com
Subject: RE: Log management software for Windows



If your firewall is able to send logs to a syslog server I suggest:

http://www.kiwisyslog.com/


Christian Julio Moldes, CISSP

-----Mensaje original-----
De: Ken Burns [mailto:KCB () KCBurns com]
Enviado el: Jueves, 16 de Octubre de 2003 04:30 p.m.
Para: security-basics () securityfocus com
Asunto: Log management software for Windows


Hello group,

I want to retain security and event log data on a Windows machine that is
generated on other machines; for example: the IDS log from my firewall.
This is not as simple as retaining a file because the firewall does not
create a file (it has no hard drive).  The firewall is equipped to export
(stream) the log data to a computer (by IP address), but the Windows
machine, without additional software, has no concept what this incoming
data
stream is or what to do with it.  I understand that Linux comes with log
management software... but I want to use a Windows machine; so, the
question
is: Do you know of any good but free or cheap log management software that
will run on a Windows machine?

Thanks for any suggestions,

Ken







--------------------------------------------------------------------------
-
FREE Whitepaper: Better Management for Network Security

Looking for a better way to manage your IP security?
Learn how Solsoft can help you:
- Ensure robust IP security through policy-based management
- Make firewall, VPN, and NAT rules interoperable across heterogeneous
networks
- Quickly respond to network events from a central console

Download our FREE whitepaper at:
http://www.securityfocus.com/sponsor/Solsoft_security-basics_031015
--------------------------------------------------------------------------
--


This email message is for the sole use of the intended recipient(s) and
may
contain confidential and privileged information. Any unauthorized review,
use, disclosure or distribution is prohibited. If you are not the intended
recipient, please contact the sender by reply email and destroy all copies
of the original message.  Thank you.


--------------------------------------------------------------------------
-
FREE Whitepaper: Better Management for Network Security

Looking for a better way to manage your IP security?
Learn how Solsoft can help you:
- Ensure robust IP security through policy-based management
- Make firewall, VPN, and NAT rules interoperable across heterogeneous
networks
- Quickly respond to network events from a central console

Download our FREE whitepaper at:
http://www.securityfocus.com/sponsor/Solsoft_security-basics_031015
--------------------------------------------------------------------------
--



---------------------------------------------------------------------------
FREE Whitepaper: Better Management for Network Security

Looking for a better way to manage your IP security?
Learn how Solsoft can help you:
- Ensure robust IP security through policy-based management
- Make firewall, VPN, and NAT rules interoperable across heterogeneous
networks
- Quickly respond to network events from a central console

Download our FREE whitepaper at:
http://www.securityfocus.com/sponsor/Solsoft_security-basics_031015
----------------------------------------------------------------------------


Current thread: