Re: [logs] Host IDS for Windows

From: Victor Fernandes (Victor.Fernandesat_private)
Date: Tue Jan 08 2002 - 01:58:41 PST

  • Next message: Ganu Skop: "[logs] ip mapping software"

    On that domain my preferred product (just because I use it) is 
    ELM from TNT Software
    (http://www.tntsoftware.com/products/emon22/Default.asp). 
    Lots of functionality and it include a syslog server and client giving 
    the possibility to integrate Windows and UNIX events.
    
    Best regards,
    
    Victor Fernandes
    
    
    Tina Bird wrote:
    > 
    > Hi all -- People looking for a pure Windows EventLog
    > monitoring system may want to take a look at
    > 
    > http://www.gfi.com
    > 
    > Their LANguard Security EventLog Monitor can watch
    > multiple Windows servers and workstations from a central
    > console, and send SMTP alerts for a variety of security
    > events (failed logons, admin access after hours, etc).
    > 
    > I've never used it.  Anyone out there taken a look at
    > it?  Opinions much appreciated.  I am not affiliated with
    > GFI or any of its resellers.
    > 
    > cheers -- tbird
    > 
    > "I was being patient, but it took too long." -
    >                                 Anya, "Buffy the Vampire Slayer"
    > 
    > Log Analysis: http://www.counterpane.com/log-analysis.html
    > VPN:  http://kubarb.phsx.ukans.edu/~tbird/vpn.html
    > 
    > ---------------------------------------------------------------------
    > To unsubscribe, e-mail: loganalysis-unsubscribeat_private
    > For additional commands, e-mail: loganalysis-helpat_private
    
    ---------------------------------------------------------------------
    To unsubscribe, e-mail: loganalysis-unsubscribeat_private
    For additional commands, e-mail: loganalysis-helpat_private
    



    This archive was generated by hypermail 2b30 : Tue Jan 08 2002 - 09:36:02 PST