Security Basics mailing list archives

Re: Auditing XP event security logs


From: jws226 () psu edu
Date: 3 Dec 2006 17:39:53 -0000

NTsyslog (Open Source) will convert Event Viewer data to a syslog stream (I use this, very light weight and easy to 
deploy across many servers)

Snare  (http://www.intersectalliance.com/) will also forward event log data (via syslog stream I think) 

Microsoft MOM/ MOM agent also has the capability to forward event logs.  However, this setup is pricey...

There are other pay for agents out there as well such as Monitorware Agent. (Has the ability to tail flatfiles which is 
nice for application/Database logs)


Current thread: