OT: IDS/Event correlation tools

From: Wright, Jeremy (wright@admworld.com)
Date: Thu Jun 03 2004 - 12:25:58 GMT-3


Looking for recommendations on an event correlation tools. Meaning we have several event tools (syslog from routers and pix's, snmp, Enterasys Dragon IDS, soon to be CSA, NCircle IP360 IDS, possibly security audit logs from servers) that we would like to have in a management interface where we can drill down. Any suggestions would be appreciated. Thanks.

 
 
 
 
 
 
 *****************************************
              Jeremy Wright
              CCIE# 11168
              Network Engineer
              Archer Daniels Midland
              wright@admworld.com
              (217)451-4063
 
*****************************************

CONFIDENTIALITY NOTICE:
        This message is intended for the use of the individual or entity to which it is addressed and may contain information that is privileged, confidential and exempt from disclosure under applicable law. If the reader of this message is not the intended recipient or the employee or agent responsible for delivering this message to the intended recipient, you are hereby notified that any dissemination, distribution or copying of this communication is strictly prohibited.
        If you have received this communication in error, please notify us immediately by email reply or by telephone and immediately delete this message and any attachments. In the U.S. call us toll free at (800) 637-5843.
        Spanish, French, French (Canada), Portuguese, Polish, German, Dutch, Turkish, Russian, Japanese and Chinese: http://www.admworld.com/confidentiality.htm.



This archive was generated by hypermail 2.1.4 : Sat Jul 03 2004 - 19:40:32 GMT-3