[logs] Whitepaper on Security event monitoring

From: Susan Bradley, CPA aka Ebitz - SBS Rocks [MVP] (sbradcpa@private)
Date: Mon Jun 13 2005 - 10:40:41 PDT


http://www.microsoft.com/downloads/details.aspx?familyid=95a85136-f08f-4b20-942f-dc9ce56bcd1a&displaylang=en 
<http://www.microsoft.com/downloads/details.aspx?familyid=95a85136-f08f-4b20-942f-dc9ce56bcd1a&displaylang=en>

This guide is designed to help organizations plan a security monitoring 
and attack detection system based on Windows Security Event logs. It 
highlights how to interpret the events and which events indicate the 
possibility that an attack is in progress.

-- 
Letting your vendors set your risk analysis these days?  
http://www.threatcode.com

_______________________________________________
LogAnalysis mailing list
LogAnalysis@private
http://lists.shmoo.com/mailman/listinfo/loganalysis



This archive was generated by hypermail 2.1.3 : Mon Jun 13 2005 - 10:52:08 PDT