RE: [logs] BEEP: tcp based async message passing protocol/framework

From: Wright, Joseph G (Gregory), SOLCM (josephgwrightat_private)
Date: Fri Apr 19 2002 - 17:25:18 PDT

  • Next message: Eric Fitzgerald: "RE: [logs] XP logon/logoff failure audit"

    Ashish -
    
        I believe that the IDWG (Intrusion Detection Working Group) has some
    drafts out for the IDMEF (Intrusion Detection Message Exchange Format) and
    the IDXP (Intrusion Detection eXchange Protocol), which utilize BEEP for
    the transfer of alarm data from intrusion detection systems to collection
    points. <http://www.ietf.org/html.charters/idwg-charter.html> Also, Marshall 
    Rose and company have put together a draft for the syslog-reliable protocol, 
    which utilizes BEEP. <http://www.ietf.org/internet-drafts/draft-ietf-syslog-reliable-12.txt>
    
        From what I have seen of it from my research, BEEP seems to be very
    flexible and extensible, and the design in general makes sense. I haven't
    had a chance to really get my hands dirty with it though, so maybe someone
    can fill in those gaps.
    
    HTH -
    Greg
    
    --
    J. Gregory Wright
    Senior Software Engineer
    AT&T Information Security Center
    Cyber Defense Platform Development
    
    
    -----Original Message-----
    From: Desai, Ashish [mailto:Ashish.Desaiat_private]
    Sent: Friday, April 19, 2002 2:41 PM
    To: 'loganalysisat_private'
    Subject: [logs] BEEP: tcp based async message passing protocol/framework
    
    
    
    Hi folks,
    	I just saw a new book at O'Reilly that talked about "BEEP" as:
    
    		BEEP gives network developers what they've long needed: 
    	a standard toolkit for building protocols quickly and conveniently. 
    	Written by BEEP's creator, this book demonstrates how to use the 
    	BEEP implementation in Java, C, and Tcl. You'll learn to build
    several 
    	working applications that use BEEP as a transport, including an
    	 implementation of the reliable SYSLOG protocol and an
    	 implementation of a BEEP transport for SOAP.
    	http://www.oreilly.com/catalog/beep/
    
    	and via google: http://beepcore.org/beepcore/home.jsp
    
    	Has anyone heard of this or has any comments on how this could
    	be used for building a centralized logging infrastructure?
    	
    
    Thanks
    
    Ashish
    
    ---------------------------------------------------------------------
    To unsubscribe, e-mail: loganalysis-unsubscribeat_private
    For additional commands, e-mail: loganalysis-helpat_private
    
    ---------------------------------------------------------------------
    To unsubscribe, e-mail: loganalysis-unsubscribeat_private
    For additional commands, e-mail: loganalysis-helpat_private
    



    This archive was generated by hypermail 2b30 : Fri Apr 19 2002 - 21:27:00 PDT