PaulDotCom mailing list archives

SMB Security Event Management Tool


From: cmerkel at gmail.com (Chris Merkel)
Date: Wed, 8 Apr 2009 08:59:31 -0500

Q1 has a free log management engine - as long as you're taking in less than
50 events per second, you should be good:

http://www.q1labs.com/qradar-slim-fe/

- Chris Merkel

On Tue, Apr 7, 2009 at 7:55 PM, Jim Manley <jmanley at aledobb.com> wrote:

I'm looking for a security event management tool (log correlation,
auditing, etc.) that would be suitable for small/medium size business
environment.  The environments in which it would be deployed into are
primarily MS Windows with a smattering of Linux.

It doesn't need a lot of bells and whistles and it needs to be fairly
easy to set up and operate (the people doing the work are primarily
physical security types with the average user's knowledge).  Ideally it
needs to trigger on Windows event manager and security manager codes for
things like failed logins, etc.

Thanks,

Jim
aka oaa PDP/11


-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mail.pauldotcom.com/pipermail/pauldotcom/attachments/20090408/7c5be8b2/attachment.htm 


Current thread: