[osiris] Re: Sending Osiris logs to a centralized Envision log server

Michael Menge michael.menge at zdv.uni-tuebingen.de
Fri Sep 7 02:53:29 EDT 2007


Hi,

i don't know about windows systems, but on linux osirsmd logs to  
syslogd/syslog-ng. You can tell syslog to log to an other host  
(centralized log server). You can also decide with regexp which  
messages should go to which logserver. See manpages for syslog for  
details

On linux and windows it is possible to use the mail notification to  
send the scan logs to an other server via email. But you must parse  
these emails an configur your system to accept/send large emails.  
After an update these emails can become large

Quoting "Wohlford.Michael" <Wohlford.Michael at palmcoastd.com>:

> I'm in the processing of preparing for a PCI (Payment Card Industry)
> compliance audit. Our company has deployed RSA Envision centralized log
> server to manage our Windows/Linux/AS400/Oracle DB log files. We have
> tested Osiris per our file integrity monitoring piece and find it to be
> a viable solution.
>
> The question is: Can Osiris logs be configured and sent to a centralized
> log server other than an Osiris log server (RSA Envision
> http://www.rsa.com/node.aspx?id=3170) ?
>
> If so could you provide some configuration guidance (URL, etc)
>
>
>
> Thank you
>
>
>
> Mike Wohlford
>
> Security Administrator
>
> Network Services
>
> Palm Coast Data
>
> 11 Commerce Blvd
>
> Palm Coast, FL 32164
>
> Phone: 386-447-6334
>
> Fax: 386-445-7319
>
> wohlford.michael at palmcoastd.com
>
>
>
>



--------------------------------------------------------------------------------
M.Menge                                 Tel.: (49) 7071/29-70316
Universitaet Tuebingen                  Fax.: (49) 7071/29-5912
Zentrum fuer Datenverarbeitung          mail:  
michael.menge at zdv.uni-tuebingen.de
Waechterstrasse 76
72074 Tuebingen
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 5339 bytes
Desc: S/MIME krytographische Unterschrift
Url : http://lists.shmoo.com/pipermail/osiris/attachments/20070907/2b664afe/attachment.bin 


More information about the osiris mailing list