[logs] Syslog and Windows

John Kinsella jlk at thrashyour.com
Fri Jun 22 08:12:08 PDT 2007


On Fri, Jun 22, 2007 at 08:43:41PM +1200, Russell Fulton wrote:
> 
> 
> John Kinsella wrote:
> > Intersect Alliance provides their Snare client, released under the
> > GPL.  Several of our(Kliosoft's) clients have found stability of
> > the Snare Windows service to be less than perfect, plus they wanted
> > us to provide support for the product, so we wrote our own Windows
> > Event -> Syslog service which we distribute with our product,
> > Conductor.  Depending on your needs, Snare might do the trick.  That's
> > the only "free" util that I know of...
> >   
> We have operated a central log service using syslog-ng for our UNIX
> boxes for many years and are just started feeding windows logs to it
> using Snare.  So far we are very happy with Snare and have not noticed
> any stability problems, but it is early days yet...  It was straight
> forward to get set up and so far has been trouble free.

Good to hear.  I don't mean to sound like I'm spreading FUD...I
personally don't have enough experience using it in production, but have
had several clients comment on it.  So, hearsay...

Also good to hear there's one or two alternatives out there - I'll have
to check them out.

John


More information about the LogAnalysis mailing list