|
Posted by S. Pidgorny on November 14, 2005, 7:47 pm
Please log in for more thread options
Not yet free tool from Microsoft. Maybe in MOM and NetIQ.
I'd suggest to use syslog for event consolidation. For Windows event log to
syslog, you can use Snare Agent (free):
http://www.intersectalliance.com/projects/SnareWindows/index.html
As syslog server, can use Kiwi Syslog Daemon:
http://www.kiwisyslog.com/info_syslog.htm
Commercial version supports ODBC logging to SQL Server.
Alternatively you can consider Snare server.
--
Svyatoslav Pidgorny, MS MVP - Security, MCSE
-= F1 is the key =-
> Is there a server available that will periodically collect all of the
> security eventviewer messages from each machine on the network and then
> put
> those into an SQL database where they can be queried as a global resource
> for the company?
>
> --
> Will
>
>
|