Security Basics mailing list archives

Re: log level settings


From: tomasgermano () hotmail com
Date: 25 Sep 2007 00:05:49 -0000

For Windows security logs, you can use this tips:
http://www.ultimatewindowssecurity.com/encyclopedia.aspx

And for unix environment, I recomend SANS papers.
Of course, you can start monitoring auth event (syslog) and if you use sudo, configure it to loggin with syslog to.

interesting tools:
Snare client
logparser

bye

Tomas A Germano
Argentina


Current thread: