Related Stories

  • Like Falling Off a Log
    System logs haven’t really changed since the days of the IBM 360, but the need to manage them effectively for security purposes certainly has. Danny Bradbury finds out why log management is so important – and why we aren’t doing it properly
  • An Olympic Effort to Secure the Games
    Managing the security of the 2010 Olympic Games in Vancouver is no mean feat. Danny Bradbury went behind the scenes at the Olympic site to talk to the people who are tasked with ensuring the event goes smoothly
  • Finding Your Way: An Overview of Industry Qualifications and Associations
    The proliferation of information security qualifications, standards and membership associations has reached a level whereby a degree of confusion is understandable. Peter Drabwell introduces some of the qualifications and associations out there
  • Comment: Black Swans, Secure Access and Business Continuity
    How can businesses deliver flexible, scalable and secure remote access to staff during contingencies, while controlling costs? Check Point’s Nick Lowe describes a new approach to the problem
  • Symantec upgrades key products
    Symantec announced a range of new products today designed to lock down business IT assets. It unveiled version 10 of its Control Compliance Suite, Data Loss Prevention Suite 10.5, Altiris IT Management Suite 7.0, and its Symantec Protection Suites.

News

Ipswitch launches log management suite

17 March 2010

Ipswitch has launched the WhatsUp Event Log Management Suite, including its newly acquired WhatsUp Event Rover 3.0, two tools that it hopes will make it easier for customers to manage their networks by logging security events, while protecting files for forensic investigations.

The Ipswitch event log management suite contains four tools. The Event Archiver automatically collects events and stores them securely. The Event Analyst module enables log analyst personnel to identify trends in logged events, while generating compliance reports for auditors. The WhatsUp Event Alarm focuses on immediate alerts for events that require the attention of IT staff. It monitors the system and notifies assigned personnel when pre-identified conditions are met. Finally, the WhatsUp Event Rover deals with on-the-fly forensics and log data mining.

Event Rover 3.0 came from Ipswitch's acquisition of Dorian Software in January. The product enables users to recover corrupt EVTX files without modifying the files and ruining or tampering with potentially valuable forensic information, Ipswitch said.

EVTX is a format used by newer Windows systems such as Vista and Windows 7. However, older versions use the EVT format. The event logger also includes LogRefiner, which enables the suite to deal with both.
 

 

This article is featured in:
IT Forensics

 

Comment on this article

You must be registered and logged in to leave a comment about this article.