the most trusted source for computer security training, certification and research


A Framework to Collect Security Events for Intrusion Analysis

Click Here
Abstract
It becomes a problem when you have several firewalls, intrusion sensors or servers and to top it off, not all firewalls and intrusion sensors generate logs in a standard format. This means you may need several tools to analyze data maybe even one tool per each device per vendor. This can be a mess. This paper assumes you need a way to consolidate event logs from these devices and present them to the people who are chartered to analyze and take action wn an efficient manner.
<<Reading Room Home     <<Back to Category

Contact us: (301) 654-SANS(7267)
Monday - Friday 9am-8pm EST/EDT