Re: [logs] Retrieving logs from Windows server

From: Stephen P. Berry (spb@private)
Date: Mon Jan 24 2005 - 19:20:05 PST


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


Walter writes:

>Maybe I missed something, but I didn't see
>any option to have Windows Server act as a Syslog
>client? Could you point me towards a reference?

If you're looking for a free/GPL'd solution, the one that sucks
least (in my experience) is SNARE:

	http://www.intersectalliance.com/projects/SnareWindows/index.html

The events are, alas, tab delimited, but assuming you're attempting
to parse the data with something like SEC or swatch, this should not
be an issue.




- -spb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (OpenBSD)

iD8DBQFB9brTG3kIaxeRZl8RAmHPAKDm5KlntqFgSAzoVqtrsMUhCK208gCgs3fO
DipmO03VZiKR3XfX2B4F/NQ=
=7Fz0
-----END PGP SIGNATURE-----
_______________________________________________
LogAnalysis mailing list
LogAnalysis@private
http://lists.shmoo.com/mailman/listinfo/loganalysis



This archive was generated by hypermail 2.1.3 : Tue Jan 25 2005 - 10:12:20 PST