Educause Security Discussion mailing list archives
Re: logging windows text-based files to central logging server
From: Michael Bayne <baynema () JMU EDU>
Date: Fri, 27 Jul 2007 13:58:35 -0400
We're sending everything to a central syslog-ng server, and the syslog-ng server forwards select logs to other systems such as the Cisco CS-MARS box, a test splunk box, and a couple of other legacy syslog servers looking for specific traffic. Deepak J. Mathew wrote:
This doesn't answer your question, but what central logging tool are you using? Thanks! Dee Deepak J. Mathew Systems Manager - Administrative Systems Rice University (t) 713-348-4328 -----Original Message----- From: Michael Bayne [mailto:baynema () JMU EDU] Sent: Friday, July 27, 2007 9:33 AM To: SECURITY () LISTSERV EDUCAUSE EDU Subject: [SECURITY] logging windows text-based files to central logging server We have a number of windows applications logging to text-based log files (IIS, apache, app servers, etc). We'd like to get these logs off of the windows servers and onto our central syslog server and CS-MARS device in a (near) real-time manner. So far, I haven't been able to find a tool to do this reliably. Intersect Alliance's Epilog Agent for Windows is the best I've seen so far, but I've found it prevents log rotation. So, I'm curious as to what you are doing. Are you logging these text-based logs to a central location (syslog or otherwise)? What tools are you using to do so? Thanks.
-- Mike Bayne Security Engineer baynema () jmu edu 1.540.568.1684
Attachment:
smime.p7s
Description: S/MIME Cryptographic Signature
Current thread:
- logging windows text-based files to central logging server Michael Bayne (Jul 27)
- <Possible follow-ups>
- Re: logging windows text-based files to central logging server Anthony Maszeroski (Jul 27)
- Re: logging windows text-based files to central logging server Deepak J. Mathew (Jul 27)
- Re: logging windows text-based files to central logging server Joel Rosenblatt (Jul 27)
- Re: logging windows text-based files to central logging server Aaron Wade (Jul 27)
- Re: logging windows text-based files to central logging server Edgmand, Craig (Jul 27)
- Re: logging windows text-based files to central logging server Nathan W. Labadie (Jul 27)
- Re: logging windows text-based files to central logging server Michael Bayne (Jul 27)
- Re: logging windows text-based files to central logging server Michael Bayne (Jul 30)
- Re: logging windows text-based files to central logging server Havens, Ben (Jul 30)
- Re: logging windows text-based files to central logging server Michael Bayne (Jul 30)
- Re: logging windows text-based files to central logging server Julian J Thompson (jthmpsn2) (Jul 31)