[logs] Syslog and Windows

Rainer Gerhards rgerhards at hq.adiscon.com
Fri Jun 22 03:09:12 PDT 2007


Hi,

I am with Adiscon, the vendor of what I intend to talk about.

Our solution MonitorWare provides full monitoring and syslog forwarding
for Windows clients. We have invented this type of product and have
gathered considerable knowledge in the past 10+ years. On the down side,
the product is not free.

Among others, it enables you to not only forward Event Logs but also
text logs (read: IIS, Windows Update Log, DHCP, 3rd party apps, ...),
database content, even serial lines and (with the current beta) SMTP
messages. There are a myriad of other sources possible. Full local (pre)
processing is possible. Active Directory GUIDs and SIDs can be resolved
inside event log messages. Custom logs and the new Vista log format/API
(think Windows 2008 server) is fully supported.

I suggest you have a look at it. An overview is available at

http://www.monitorware.com/en/Product/product_comparision.php

Rainer

> -----Original Message-----
> From: loganalysis-bounces at loganalysis.org [mailto:loganalysis-
> bounces at loganalysis.org] On Behalf Of John Kinsella
> Sent: Friday, June 22, 2007 7:04 AM
> To: Bill Scherr IV
> Cc: loganalysis
> Subject: Re: [logs] Syslog and Windows
> 
> Intersect Alliance provides their Snare client, released under the
> GPL.  Several of our(Kliosoft's) clients have found stability of
> the Snare Windows service to be less than perfect, plus they wanted
> us to provide support for the product, so we wrote our own Windows
> Event -> Syslog service which we distribute with our product,
> Conductor.  Depending on your needs, Snare might do the trick.  That's
> the only "free" util that I know of...
> 
> John
> Chief Scientist, Kliosoft
> 
> On Fri, Jun 22, 2007 at 12:35:29AM -0400, Bill Scherr IV wrote:
> > All...
> >
> >    What do you suggest for sending windows logs to syslog
> >
> > B.
> >



More information about the LogAnalysis mailing list