[logs] open source artificial ignorance-like systems

James Turnbull james at lovedthanlost.net
Wed Apr 18 19:22:46 PDT 2007


Joe_Wulf wrote:
> I'd like to offer another perspective.......... what about a 'dictionary'?
> All the OS's have 'some' elements of commonality.  Each OS vender has common
> areas.
> Create an analysis of log information that is common and stabilize its 'format',
> even
> to the 'bit' level where applicable, and document it.  That is then standard
> parse able.

Indeed - perhaps something along the lines of CVE?  From my reading this
seems to be at least partially the intent of the CEE standard that Anton
recently posted.

Regards

James Turnbull

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 250 bytes
Desc: OpenPGP digital signature
Url : http://www.loganalysis.org/pipermail/loganalysis/attachments/20070419/ee395f3d/signature.bin


More information about the LogAnalysis mailing list