[145318] in North American Network Operators' Group
Re: events
daemon@ATHENA.MIT.EDU (Leigh Porter)
Tue Oct 4 06:01:15 2011
From: Leigh Porter <leigh.porter@ukbroadband.com>
To: Ben Roeder <ben.roeder@sohonet.co.uk>
Date: Tue, 4 Oct 2011 10:00:47 +0000
In-Reply-To: <09B27B5B-0C68-4263-BA3F-DFB4C80E4BEF@sohonet.co.uk>
Cc: NANOG list <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
8pussy.org ?
--=20
Leigh Porter
On 4 Oct 2011, at 10:59, "Ben Roeder" <ben.roeder@sohonet.co.uk> wrote:
> Hi Mike,
> We have used octopussy ( http://www.8pussy.org/dokuwiki/doku.php?id=3Dho=
me yes it is work safe :-) ) with ok results.
> Have used sec ( simple event correlator http://simple-evcorr.sourceforge=
.net/ ) to some success in simple cases.
>=20
> Currently having another look at this myself and the following look inte=
resting, but have not deployed them yet
> http://logstash.net/
> http://graylog2.org/about
>=20
> Ben
> On 30 Sep 2011, at 14:50, harbor235 wrote:
>=20
>> What is everyone using to collect, alert, and analyze syslog data?
>> I am looking for something that can generate reports as well as support=
>> multiple vendors. We have done some home grown stuff in the past but
>> would be interested in something that incorprates all the best feature=
s.
>>=20
>> Soalrwinds, splunk, fwanalog, and others come to mind, any other good o=
nes
>> out there?
>>=20
>>=20
>> Mike
>=20
>=20
>=20
>=20
>=20
> ______________________________________________________________________
> This email has been scanned by the MessageLabs Email Security System.
> For more information please visit http://www.messagelabs.com/email=20
> ______________________________________________________________________
______________________________________________________________________
This email has been scanned by the MessageLabs Email Security System.
For more information please visit http://www.messagelabs.com/email=20
______________________________________________________________________