Re: [loganalysis] Larg scale log architecture

From: Gary Richardson (gary.richardsonat_private)
Date: Wed Sep 05 2001 - 16:46:31 PDT

  • Next message: Andreas Siegert: "Re: [loganalysis] Larg scale log architecture"

    Hey,
    
    Try this out:
    
    http://www.netplex-tech.com/software/snips
    
    Snips only logs changes in status, which would probably cut down your log size. 
    
    Also, maybe you should filter stuff out that isn't useful. 
    
    On Wed, 5 Sep 2001 12:03:08 +0200, Andreas Siegert said:
    
    > Hi,
    >  
    >  I am looking for any hints on how others have solved large scale log
    >  architecture problems.
    >  
    >  Central sites with several hundred GB of log data per day plus remote sistes
    >  on slow or already full links. Logging of accepted and denied traffic from
    >  firewalls (raptor, fw-1, ...) plus syslog.
    >  
    >  Goal is to have real time alerts and long term analysis of all the data.
    >  
    >  Any experience with SLR from NFR or others?
    >  
    >  thx
    >  afx
    
    -- 
    ---------------------------------------------------------
    T H E	I N T E R N E T   M A R K E T I N G   C E N T E R
    ---------------------------------------------------------
    Gary Richardson 			   gary.richardsonat_private
    System Administrator		
    ---------------------------------------------------------
    ---------------------------------------------------------
    
    
    
    ---------------------------------------------------------------------
    To unsubscribe, e-mail: loganalysis-unsubscribeat_private
    For additional commands, e-mail: loganalysis-helpat_private
    



    This archive was generated by hypermail 2b30 : Wed Sep 05 2001 - 17:58:49 PDT