Re: OT: IDS/Event correlation tools

From: Sean Muller (seangmuller@runbox.com)
Date: Thu Jun 03 2004 - 13:01:59 GMT-3


Try Netforensics

> Looking for recommendations on an event correlation tools. Meaning we have several event tools (syslog from routers and pix's, snmp, Enterasys Dragon IDS, soon to be CSA, NCircle IP360 IDS, possibly security audit logs from servers) that we would like to have in a management interface where we can drill down. Any suggestions would be appreciated. Thanks.
>
>
>
>
>
>
>
> *****************************************
> Jeremy Wright
> CCIE# 11168
> Network Engineer
> Archer Daniels Midland
> wright@admworld.com
> (217)451-4063
>
> *****************************************
>
>
> CONFIDENTIALITY NOTICE:
> This message is intended for the use of the individual or entity to which it is addressed and may contain information that is privileged, confidential and exempt from disclosure under applicable law. If the reader of this message is not the intended recipient or the employee or agent responsible for delivering this message to the intended recipient, you are hereby notified that any dissemination, distribution or copying of this communication is strictly prohibited.
> If you have received this communication in error, please notify us immediately by email reply or by telephone and immediately delete this message and any attachments. In the U.S. call us toll free at (800) 637-5843.
> Spanish, French, French (Canada), Portuguese, Polish, German, Dutch, Turkish, Russian, Japanese and Chinese: http://www.admworld.com/confidentiality.htm.
>
> _______________________________________________________________________
> Please help support GroupStudy by purchasing your study materials from:
> http://shop.groupstudy.com
>
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html



This archive was generated by hypermail 2.1.4 : Sat Jul 03 2004 - 19:40:32 GMT-3