Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: Event Log Monitor Program |
|---|---|
| Date: | Thu, 27 Sep 2007 11:09:17 -0400 |
Opensource - OSSIM KIWI can be used to centrally collect events from WIN32 via snare(opensource syslog client) then you can forward those events to Aanval (free for 1 syslog source and 1 snort ids source) Aanval may provide the insight you are looking for. Commercial- LTAuditor, Q1-labs(Enterasys) <-- real nice!! and Tenable Log Coorelation <--supernice!! On 9/20/07, Adam Savage <Adam_Savage@skillsoft.com> wrote:
I'm looking for a good event log program that can consolidate all my event logs from my servers into one location. Then I can report on them and such. We purchased GFI Security Event Log Monitor but we find the program cumbersome at best and doesn't give you any insight on some of the event messages that are produced. I'd like to know if there is a freeware/opensource solution. I know GFI has recently come out with the Successor to SELM called EventsManager but we'd like to look into some other products that are out there first. Any replies would be greatly appreciated. Thank you, Adam
-- -p1g SnortCP ,,__ o" )~ oink oink ' ' ' ' If you spend more on coffee than on IT security, you will be hacked. What's more, you deserve to be hacked. -- former White House cybersecurity czar Richard Clarke
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: Teaching Security+ Book, Big Joe Jenkins |
|---|---|
| Next by Date: | Re: traffic creation, p1g |
| Previous by Thread: | Re: Novell Event Log Monitor Program, p1g |
| Next by Thread: | Re: Fwd: Event Log Monitor Program, mail5540064 |
| Indexes: | [Date] [Thread] [Top] [All Lists] |