Re: [logs] Quick overview of commercial log analysis tools?

From: durnieat_private
Date: Thu Dec 26 2002 - 10:15:00 PST

  • Next message: Bennet S. Yee: "Re: [logs] Year value in timestamps"

    -----BEGIN PGP SIGNED MESSAGE-----
    
    Blaise,
    
    I just finished up an evaluation of different commercial log analysis tools. I looked at Guardednet, Arcsight, Esecurity, NetIQ, Network Intelligence, Secos Spider, and Netforensics... They all have alot of work to do... Guardednet was the fastest and provided the best analytic ability IMHO...
    
    I will say that they ALL are way overpriced for such immature software...
    
    Chris Kirschke
    Sr Security Analyst
    Silicon Valley Bank
    
    On Thu, 12 Dec 2002 06:31:18 -0800 Blaise St-Laurent <bstlaurentat_private> wrote:
    >is there a compiled list anywhere? I've mostly been using opensource
    >solutions, combined with some custom scripts, but I'm curious to
    >see how
    >much work has been productized and is available.
    >
    >Blaise St-Laurent
    >
    >_______________________________________________
    >LogAnalysis mailing list
    >LogAnalysisat_private
    >http://lists.shmoo.com/mailman/listinfo/loganalysis
    >
    >
    -----BEGIN PGP SIGNATURE-----
    Version: Hush 2.2 (Java)
    Note: This signature can be verified at https://www.hushtools.com/verify
    
    wlsEARECABsFAj4LRpEUHGR1cm5pZUBodXNobWFpbC5jb20ACgkQ3UH5NRolsbbymgCg
    qxEvkrqVrbOvFs/H6oylQQtoHQ8AnR9af+iWJnUjFORM6cwy/UOF32H+
    =hIye
    -----END PGP SIGNATURE-----
    
    _______________________________________________
    LogAnalysis mailing list
    LogAnalysisat_private
    http://lists.shmoo.com/mailman/listinfo/loganalysis
    



    This archive was generated by hypermail 2b30 : Fri Dec 27 2002 - 09:55:23 PST