SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity Professionals

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsAn analysis of the system event logging protocol, syslog is discussed. A review of the problems with the syslog protocol are described. Theses security problems include the transmission of system log data in clear text, use of UDP for network transfer and storage of event data in clear text. A survey of some of the syslog replacements was done. The paper concludes with a discussion of how one might go about creating a reasonably secure logging infrastructure.