|
|||||||||||
|
Re: Automated analysis of logs?
From: K. K. Mookhey <cto(at)nii.co.in>
Date: Wed Apr 09 2003 - 01:25:02 EDT
Hi Mark,
Security Auditing Handbooks http://www.nii.co.in/research/handbook.html
I read through much of the prior thread on analysis of logs and apparently the applications mentioned will provide statistics, but they don't actually make any determinations about activity. Are there any open-source applications that I can drop various kinds of logs into (especially IIS logs) and get not only statistics, but information and/or "warnings" about various kind of known activity? Things like Nimda scanning, backdoor attempts, etc. I'm not looking for 100% precision when identifying activity, but if I can identify or in some cases filter out all known activity and concentrate on unknown, that would be really helpful. Is SPAM over-loading your e-mail server, disk space or bandwidth? SurfControl E-Mail Filter is flexible, intelligent and policy-driven protection. http://www.securityfocus.com/SurfControl-security-basics2 Download your free fully functional trial, complete with 30-days of free technical support. Stop SPAM before it stops you. Received on Wed Apr 9 12:32:50 2003 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:04:00 EDT |
||||||||||
|
|||||||||||