List Info

Thread: Recommended Log analysis tool




Recommended Log analysis tool
user name
2006-10-12 06:33:31
Hi,

Do you know any log analysis tool either commercial or
opensource or any place 
or thread/links where this topic is being discussed? There's
only one 
requirement, it must run on *nix platform. Right now we are
looking at 
sawmill and manageengine. I have until the end of the month
to decide which 
one to proposed or if you know anything that, based on
experience, can 
do "better" or any guidlines as to how do I go
about choosing my log analysis 
tools....
Right now, we have a syslog-ng which collects logs from
cisco swtiches, 
routers and junipers... Now the manageengine has its own
syslog daemon and it 
can also analyze logs from raw files just like what sawmill
does...
Is there any rule here when processing log files in
"almost" realtime vs 
processing log files which was collected by other means?

Thanks a lot.
jay
_______________________________________________
LogAnalysis mailing list
LogAnalysislists.shmoo.com
h
ttp://lists.shmoo.com/mailman/listinfo/loganalysis
Recommended Log analysis tool
user name
2006-10-13 06:56:52
You are talking about logs from network equipment only? If it is logs concerning traffic information you are interested in, i.e. access list log entries and similar, have a look at ASDIC ( http://info.ping.se/wiki/Overview ).

Regards,
Mikael Kuisma

2006/10/12, Mark Jayson R. Alvarez < mark.apacific.net.ph">mark.apacific.net.ph>:
Hi,

Do you know any log analysis tool either commercial or opensource or any place
or thread/links where this topic is being discussed? There's only one
requirement, it must run on *nix platform. Right now we are looking at
sawmill and manageengine. I have until the end of the month to decide which
one to proposed or if you know anything that, based on experience, can
do "better" or any guidlines as to how do I go about choosing my log analysis
tools....
Right now, we have a syslog-ng which collects logs from cisco swtiches,
routers and junipers... Now the manageengine has its own syslog daemon and it
can also analyze logs from raw files just like what sawmill does...
Is there any rule here when processing log files in "almost" realtime vs
processing log files which was collected by other means?

Thanks a lot.
jay
_______________________________________________
LogAnalysis mailing list
LogAnalysislists.shmoo.com">LogAnalysislists.shmoo.com
http://lists.shmoo.com/mailman/listinfo/loganalysis

[1-2]

about | contact  Other archives ( Real Estate discussion Medical topics )