Finding a Needle in a Haystack
I am going to go out on a limb and assert that over 80% of IT shops do not take security seriously and even those who do are not proactive about it.
Whenever an anomaly hits the network, system admins and network engineers hit the logs in an attempt to figure what is going on.
Ideally you will have a centralized server running “syslog” gathering logs from all devices on the network that can put out logs.
Unfortunately, unless you’re “Neo” from the movie “Matrix” it will almost impossible to make sense, interpret or pick up patterns from the vast amount of data in these logs.
This is were a good Log Analyzer comes in. There are well known log analyzers out there for web traffic, including AWStats, Analog, WebLogExpert, Webalizer and WebTrends but something more comprehensive is needed when it comes to security.
Unmatched as a security log analysis tool, “Splunk” gathers data from traps, alerts, syslog and snmp as well as imported logs and lets you graph and search it via a simple web interface. In addition to helping find threats and dangerous trends, it can generate nice reports of your findings.
On the commercial front Sawmill looks like a good product, but I will need to demo and review it.
Related articles by Zemanta
- Splunk: Log File Search Engine (arnoldit.com)
- Review: VisiStat 6.0 (macworld.com)
- Maatkit version 2582 released (xaprb.com)
- Web Success: The Traffic, Conversion, Retention (TCR) Lifecycle – Part I (webtribution.com)
- Google Real Estate SEO Rankings Now Skyrocket and Sends Reports with WebsTarget and VisiStat Joint Venture (seomashup.blogspot.com)
My Twitts
- @diegosatx conoceras a alguien en Univision Dallas.? Queremos informar sobre primarias en Dallas el proximo Domingo! 2 hours ago
- @rodolfovargas congrats 3 hours ago
- @eyeio congrats on Netflix deal 3 hours ago
- RT @ozalvarez: Netflix reducirá a la mitad el uso del ancho de banda en su servicio gracias a eyeIO http://t.co/DqhFt2ip 3 hours ago
- @marianaatencio conoces a alguien en Univision Dallas? Queremos informar sobre primarias en Dallas 4 hours ago
- RT @TheEconomist: A fresh supply of rare earth minerals from Australia and America is likely to take market power away from China http:/ ... 4 hours ago
Blogroll
- Blog de Economía y Finanzas
- Dameon D. Welch-Abernathy – Phoneboy
- Drew’s Marketing Minute
- Duct Tape Marketing
- Geek Dad
- Guy Kawasaki – How to Change the World
- Jeff Pulver Blog
- Kevin Kelly’s LifeStream
- Malcolm Gladwell
- Mark Cuban
- Nerd Vittles
- NovaSphere Blog
- OCS Team Blog
- Robert X. Cringely
- Seth Godin
- Small Business Trends
- The Eco-Capitalist – Tom Szaky
- UC – Joachim Farla
- WorkHappy
Sites I Visit
Spam Blocked
![Reblog this post [with Zemanta]](http://img.zemanta.com/reblog_e.png?x-id=231ded40-086c-4141-b54d-b87061686c62)





