Security Basics mailing list archives

RE: Auditing XP event security logs


From: "Ramki B" <bramkie () gmail com>
Date: Sun, 3 Dec 2006 20:57:33 +0530



Most of the free stuff is for *nix, you can try this

"Eventlog to Syslog Utility" 

https://engineering.purdue.edu/ECN/Resources/Documents/UNIX/evtsys

This utility outputs MS Win* event logs to Syslog which is primarily
on *nix environment...

HTH
Ramki
~~~~~~~~~~~~~~~~~~~~~~~~~~
Ramakrishnan B
Ph.: +91.9841987249
IM: bramkie () hotmail com
~~~~~~~~~~~~~~~~~~~~~~~~~~
"Be better than the best"
~~~~~~~~~~~~~~~~~~~~~~~~~~



-----Original Message-----
From: listbounce () securityfocus com 
[mailto:listbounce () securityfocus com] On Behalf Of Gary Collis
Sent: Wednesday, November 29, 2006 11:17 PM
To: security-basics () securityfocus com
Subject: Auditing XP event security logs

Hi List,

 I am aiming to monitor the useage of local admin accounts 
that I have set up on 40 machines. I have turned on auditng 
for the machines via group policy, and events seem to be 
logging OK. However I would like to automatically consolidate 
the logs into one central location, possibly an SQL database 
for ease of reference and historical purposes, and if 
possible produce some stats from them ( in a graph if possible, for
management) e.g amount of times logged in on a particular 
day/week etc.

Does anyone know of any tools that can help me achieve this? 
Ideally I am looking for free tools.

Thanks,



Current thread: