Find White Papers
Home
About Us
List Your Papers
    
> Tripwire > Tripwire Log Center: Next Generation Log and Event Management

Tripwire Log Center: Next Generation Log and Event Management

White Paper Published By: Tripwire

Event logs have to be collected and managed to meet IT compliance needs, but they are also increasingly seen as a major resource to boost enterprise security. Learn why that's so, why traditional log and event management solutions don't provide the answer, and how a modern integrated product does.



Tags : 
tripwire log center, event management, security event analysis, database, graphical tool, centralized dashboard, activity monitoring, security alert

Tripwire
Published:  Jan 26, 2010
Type:  White Paper
Length:  6 pages

Tripwire Log CenterNEXT GENERATION LOG AND EVENT MANAGEMENT
WHITE PAPERIntroduction
A decade or more ago, logs of events recorded by firewalls, focus on just collecting and storing logs, and traditional intrusion detection systems and other network devices were SIEM systems that attempt to combine both the collection considered more of a nuisance than a help. There were too and analytical prowess needed to meet the emerging trends many of them, they weren't easily collected, and there was are too complex end up being cost prohibitive for most no easy way to make sense of which were important. organizations.When network administrators had log recording turned That's not surprising since the log management indus-on, they were lost in a sea of data, and would have to try, which focuses on collecting and managing logs, and sift through it all in an attempt at analyzing suspicious the security information and event management (SIEM) activities. industry, which is the analytical side of the equation, have Some organizations deployed early Security Information developed more-or-less separately. and Event Management (SIEM) systems to help filter out the You usually either have to choose between strong log noise. The problem, however, is that the industry and gov- management or strong security event management capabili-ernment auditors found a gap in what was collected. There ties, with separate devices needed for each product. The was no way to capture the events that those early SIEM combinations that do exist are essentially tools from one solutions weren't aware of. The auditors said that everything side bolted onto those from the other, with questionable needed to be captured and stored. impact on the scalability and performance needed from Compliance regulations such as Payment Card Industry modern, integrated solutions. Data Security Standard (PCI DSS), NERC, Sarbanes-Oxley Tripwire Log Center offers a new approach. Tripwire Log (SOX), and the Federal Information Security Management Center was built to include both log and event management Act (FISMA) changed at least part of that scenario. in an all-in-one solution from the very first day. It meets IT Organizations now need to be meticulous in collecting and compliance needs by capturing tens of thousands of events storing log data. If they aren't they can be slapped with per second, then compressing, encrypting and storing the fines, and their executives held responsible. logs. Since it supports all the most popular log transmission Another, and more positive, trend is emerging. Some protocols, it can immediately collect logs from just about organizations are starting to realize they can use logs to any source. And since it has SIEM capabilities built right in, pinpoint holes in their cyber defenses and thereby boost itprovides real-time alerts about suspicious activity.security. The Defense Department in a recent study said The all-in-one log and event management capabilities that log management ranked among the highest value con- of Tripwire Log Center make it a sophisticated security trols that could be used to block attacks on networks. event analysis platform. With it, you can query and search In a 2009 survey of the log management industry, The all the data in the event database and then drill down to SANS Institute reported more organizations saying that top investigate any suspicious activities. It provides graphical uses for log data were "tracking suspicious behavior and tools for correlating events, and pinpointing parts of the user monitoring" and for forensics and day-to-day IT opera- infrastructure that could be affected by any incident. A tions. In previous years, SANS said, companies had reported centralized dashboard gives a quick view of all alerts, events trouble just collecting log data. and vulnerabilities.Mature organizations are now beginning to use logs for And, though Tripwire Log Center is a standalone prod-these more advanced purposes, it said. uct, it also works hand-in-hand with Tripwire Enterprise But there's a disconnect between desire and application. to provide a single, integrated IT security and compli-Not only are there now even more devices that produce ance automation solution that correlates change data and logs, and therefore increasingly large volumes of data to compliance status with events-of-interest produced by the manage, but different devices and operating systems use log ... [download for more]

Browse Technology Topics

Data Center

Virtualization, Cloud Computing, Infrastructure, Design and Facilities, Power and Cooling, Green Computing  
    

Data Management

Application Integration, Analytical Applications, Business Intelligence, Configuration Management, Database Development, Data Integration, Data Mining, Data Protection, Data Quality, Data Replication, Database Security, EDI, SOAP, Service Oriented Architecture, Web Service Management, Data Warehousing  
    

Enterprise Applications

Application Integration, Application Performance Management, Best Practices, Business Activity Monitoring, Business Analytics, Business Integration, Business Intelligence, Business Management, Business Metrics, Business Process Automation, Business Process Management, Call Center Management, Call Center Software, Change Management, Corporate Governance, Customer Interaction Service, Customer Relationship Management, Customer Satisfaction, Customer Service, EBusiness, Enterprise Resource Planning, Enterprise Software, EProcurement, Extranets, Groupware Workflow, HIPAA Compliance, IP Faxing, IT Spending, Marketing Automation, Performance Testing, Product Lifecycle Management, Project Management, Return On Investment, Risk Management, Sales & Marketing Software, Sales Automation, Server Virtualization, Simulation Software, Supply Chain Management, System Management Software, Total Cost of Ownership, Video Conferencing, Voice Recognition, Voice Over IP, Workforce Management, Incentive Compensation, Spend Management, Manufacturing Execution Systems, International Computing  

Human Resource Technology

Human Resources Services, Payroll Software, Time and Attendance Software, Workforce Management Software, Financial Management, Employee Monitoring Software, Employee Training Software, Recruiting Software/Services, Employee Performance Management, ELearning, Benefits Management, Expense Management  
    

IT Career Advancement

Cisco Certification, Microsoft Certification, Linux Certification, Network Security Certification, Software Development Certification  

IT Management

Employee Performance, ITIL, Productivity, Project Management, Software Compliance, Sarbanes Oxley Compliance, Service Management, Desktop Management  
    

Knowledge Management

Collaboration, Collaborative Commerce, Contact Management, Content Delivery, Content Integration, Content Management System, Corporate Portals, Customer Experience Management, Document Management, Information Management, Intranets, Messaging, Records Management, Search And Retrieval, Search Engines, Secure Content Management, SLA  

Networking

Active Directory, Bandwidth Management, Convergence, Distributed Computing, Ethernet Networking, Fibre Channel, Gigabit Networking, Governance, Grid Computing, Infrastructure, Internetworking Hardware, Interoperability, IP Networks, IP Telephony, Local Area Networking, Load Balancing, Migration, Monitoring, Network Architecture, Network Management, Network Performance, Network Performance Management, Network Provisioning, Network Security, OLAP, Optical Networking, Quality Of Service, Remote Access, Remote Network Management, Server Hardware, Servers, Small Business Networks, TCP/IP Protocol, Test And Measurement, Traffic Management, Tunneling, Utility Computing, VPN, Wide Area Networks, Green Computing, Cloud Computing, Power and Cooling, Data Center Design and Management, Colocation and Web Hosting  
    

Platforms

AS/400, Domino, Linux, Microsoft Exchange, Oracle, PeopleSoft, SAP, Siebel, Solaris, Tivoli, Unix, Web Sphere, Windows, Windows Server  

Security

Access Control, Anti Spam, Anti Spyware, Anti Virus, Application Security, Auditing, Authentication, Biometrics, Business Continuity, Compliance, DDoS, Disaster Recovery, Email Security, Encryption, Firewalls, Hacker Detection, High Availability, Identity Management, Internet Security, Intrusion Detection, Intrusion Prevention, IPSec, Network Security Appliance, Password Management, Patch Management, Phishing, PKI, Policy Based Management, Security Management, Security Policies, Single Sign On, SSL, Secure Instant Messaging, Web Service Security, PCI Compliance, Vulnerability Management  
    

Software Development

.NET, C++, Database Development, Java, Middleware, Open Source, Software Outsourcing, Quality Assurance, Scripting, SOAP, Software Testing, Visual Basic, Web Development, Web Services, Web Service Security, XML  

Storage

Backup And Recovery, Blade Servers, Clustering, IP Storage, ISCSI, Network Attached Storage, RAID, Storage Area Networks, Storage Management, Storage Virtualization, Email Archiving, Data Deduplication  
    

Wireless

802.11, Bluetooth, CDMA, GPS, Mobile Computing, Mobile Data Systems, Mobile Workers, PDA, RFID, Smart Phones, WiFi, Wireless Application Software, Wireless Communications, Wireless Hardware, Wireless Infrastructure, Wireless Messaging, Wireless Phones, Wireless Security, Wireless Service Providers, WLAN  
Search