[osiris] Re: Sending Osiris logs to a centralized Envision log server
Michael Menge
michael.menge at zdv.uni-tuebingen.de
Fri Sep 7 02:53:29 EDT 2007
Hi,
i don't know about windows systems, but on linux osirsmd logs to
syslogd/syslog-ng. You can tell syslog to log to an other host
(centralized log server). You can also decide with regexp which
messages should go to which logserver. See manpages for syslog for
details
On linux and windows it is possible to use the mail notification to
send the scan logs to an other server via email. But you must parse
these emails an configur your system to accept/send large emails.
After an update these emails can become large
Quoting "Wohlford.Michael" <Wohlford.Michael at palmcoastd.com>:
> I'm in the processing of preparing for a PCI (Payment Card Industry)
> compliance audit. Our company has deployed RSA Envision centralized log
> server to manage our Windows/Linux/AS400/Oracle DB log files. We have
> tested Osiris per our file integrity monitoring piece and find it to be
> a viable solution.
>
> The question is: Can Osiris logs be configured and sent to a centralized
> log server other than an Osiris log server (RSA Envision
> http://www.rsa.com/node.aspx?id=3170) ?
>
> If so could you provide some configuration guidance (URL, etc)
>
>
>
> Thank you
>
>
>
> Mike Wohlford
>
> Security Administrator
>
> Network Services
>
> Palm Coast Data
>
> 11 Commerce Blvd
>
> Palm Coast, FL 32164
>
> Phone: 386-447-6334
>
> Fax: 386-445-7319
>
> wohlford.michael at palmcoastd.com
>
>
>
>
--------------------------------------------------------------------------------
M.Menge Tel.: (49) 7071/29-70316
Universitaet Tuebingen Fax.: (49) 7071/29-5912
Zentrum fuer Datenverarbeitung mail:
michael.menge at zdv.uni-tuebingen.de
Waechterstrasse 76
72074 Tuebingen
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 5339 bytes
Desc: S/MIME krytographische Unterschrift
Url : http://lists.shmoo.com/pipermail/osiris/attachments/20070907/2b664afe/attachment.bin
More information about the osiris
mailing list