Announcement

Collapse
No announcement yet.

Windows Logging Server

Collapse
X
  • Filter
  • Time
  • Show
Clear All
new posts

  • Windows Logging Server

    Hi, I am looking for a logging server application/software that can keep logs of everything in the network regardless of system and storage requirements. is there any software of way that i can log every activity in our network??

  • #2
    Re: Windows Logging Server

    You need to be more descriptive.

    Regards,
    Kapil Sharma
    ~~~~~~~~~~~~~
    Life is too short, Enjoy It.

    Comment


    • #3
      Re: Windows Logging Server

      Something like this??

      http://www.gfi.com/nsm/

      Comment


      • #4
        Re: Windows Logging Server

        GFI is network Monitoring and Management Software. we are also considering 'Event Tracker' which is i think much better [ http://www.prismmicrosys.com/eventTracker.php ]

        Our IT Manager want to Log all activities in our network from everyone ( internal and external users) our staff has VPN access and our website is managed by a German company. Recently we had many external attacks on our network. The primary purpose is to log all the activities in our networkas we are going for PCI DSS Compliance and this is also one of their requirements. I hope this information is sufficient

        Comment


        • #5
          Re: Windows Logging Server

          Originally posted by azaak View Post
          GFI is network Monitoring and Management Software. we are also considering 'Event Tracker' which is i think much better [ http://www.prismmicrosys.com/eventTracker.php ]

          Our IT Manager want to Log all activities in our network from everyone ( internal and external users) our staff has VPN access and our website is managed by a German company. Recently we had many external attacks on our network. The primary purpose is to log all the activities in our networkas we are going for PCI DSS Compliance and this is also one of their requirements. I hope this information is sufficient
          What exactly do you want to log???

          If you start logging absolutely everything then your network couls slow right down and then you have users compaining.

          Comment


          • #6
            Re: Windows Logging Server

            Err what do you want to log?
            the eventviewers from the servers?
            SNMP traps from the firewall and switches?
            Marcel
            Technical Consultant
            Netherlands
            http://www.phetios.com
            http://blog.nessus.nl

            MCITP(EA, SA), MCSA/E 2003:Security, CCNA, SNAF, DCUCI, CCSA/E/E+ (R60), VCP4/5, NCDA, NCIE - SAN, NCIE - BR, EMCPE
            "No matter how secure, there is always the human factor."

            "Enjoy life today, tomorrow may never come."
            "If you're going through hell, keep going. ~Winston Churchill"

            Comment


            • #7
              Re: Windows Logging Server

              we want to keep logs for all the activities in the internal and external network from servers, users and the workstations. slow network wont be an issue as we are going to dedicate a seprate server system for it that will have the best speed and storage capabilities and will be reserved for logging only . our MD just want to record everything in the network and he is willing to do and buy anything for it and being IT team we have to follow what he says.

              Comment


              • #8
                Re: Windows Logging Server

                but what is everything????
                Please be more specific
                Marcel
                Technical Consultant
                Netherlands
                http://www.phetios.com
                http://blog.nessus.nl

                MCITP(EA, SA), MCSA/E 2003:Security, CCNA, SNAF, DCUCI, CCSA/E/E+ (R60), VCP4/5, NCDA, NCIE - SAN, NCIE - BR, EMCPE
                "No matter how secure, there is always the human factor."

                "Enjoy life today, tomorrow may never come."
                "If you're going through hell, keep going. ~Winston Churchill"

                Comment


                • #9
                  Re: Windows Logging Server

                  Everything in the network includes activities performed by application servers, database servers, domain controllers, IIS, exchange and the users on the network.

                  we want to log all kinds of alerts and events for example... critical, warning, information events, failed services, SYSLOG, policy changes, systems and data integrity, user management like failed logins/attempts by users. statistics for systems, servers services, error reports, MSN messenger, yahoo access, VPN access, network devices, DNS, DHCP, access to others accounts, logs for routers, switches and firewall...

                  I hope u might have some idea about it now.

                  Comment


                  • #10
                    Re: Windows Logging Server

                    it is going to be difficult to find a product that monitors everything that you listed..

                    most of the services you listed do support SNMP, so if you start there and look around for various applications that monitor SNMP you will be on the right track. However most of the more popular applications are linux/php/mysql based (ie: Nagios), and are quite difficult to configure. Routers/Switches/Firewalls usually support SNMP as well and you should be able to monitor those with any common network monitoring application.

                    However, Microsoft's MOM might be a good place to start for monitoring servers.. as for logging everything its going to be tough to do and it will create a drag on your network.

                    For Website monitoring I'd suggest Websense, as it not only logs but filters.

                    good luck completing this task it isn't an easy one.

                    -ecm

                    Comment


                    • #11
                      Re: Windows Logging Server

                      Damn, you are quite paranoid over there
                      However to fill you're list/needs:

                      Have a look a MOM for momitoring Microsoft products; Concord eHealth for monitoring microsoft and networkin and Websense weblogging

                      MSN/Yahoo is useless. I really don't understand why you want to log this.
                      Last edited by Dumber; 7th December 2007, 00:08.
                      Marcel
                      Technical Consultant
                      Netherlands
                      http://www.phetios.com
                      http://blog.nessus.nl

                      MCITP(EA, SA), MCSA/E 2003:Security, CCNA, SNAF, DCUCI, CCSA/E/E+ (R60), VCP4/5, NCDA, NCIE - SAN, NCIE - BR, EMCPE
                      "No matter how secure, there is always the human factor."

                      "Enjoy life today, tomorrow may never come."
                      "If you're going through hell, keep going. ~Winston Churchill"

                      Comment


                      • #12
                        Re: Windows Logging Server

                        thanks guys for the help. we finally found the exact software. the requirement for the PCI DSS is to store logs for the systems connected to the card holder data and we found 'even tracker' software solution. this tool is also used to PCI. now we are in a process to finish logging server by this weekend.

                        thanks alot for the help

                        Comment

                        Working...
                        X