RE: [logs] Severity classification and Snort events.

From: Matt Shirilla (mshirillaat_private)
Date: Fri Apr 25 2003 - 11:03:46 PDT

  • Next message: Blaise St-Laurent: "[logs] sending flatfiles to the event log in windows."

    Marcus J. Ranum wrote:
    >I guess what I'm saying is that none of this is rocket science but it
    depends
    >entirely on building some very expensive intellectual property. Which is
    why
    >the only people who are doing much with it are well-funded organizations or
    >vendors.
    
    I am glad to read that.  I recently starting collecting syslog information
    from my network devices.  I have learned agreat deal by doing this but I
    have been struggling when it comes to analysis.
    _______________________________________________
    LogAnalysis mailing list
    LogAnalysisat_private
    http://lists.shmoo.com/mailman/listinfo/loganalysis
    



    This archive was generated by hypermail 2b30 : Sun Apr 27 2003 - 13:04:20 PDT