Even Log

Download as ppt, pdf, or txt
Download as ppt, pdf, or txt
You are on page 1of 14

EventLog Analyzer is a comprehensive IT compliance and log management software for SIEM.

It provides detailed insights into your machine logs in the form of reports to help mitigate threats
in order to achieve complete network security
What we can do with
EventLog Analyzer
Conduct in-depth application auditing
Listen to your logs Audit network devices
Audit critical changes, detect data theft,
Collect, manage, analyze, EventLog Analyzer audits log data from
identify attacks, and track downtime in
correlate, and search through perimeter devices,
your business-critical applications, such
the log data of over 700 including, routers, switches, firewalls,
as databases and web servers, with
sources right out-of-the-box  and IDS/IPS to provide valuable insights on:
EventLog Analyzer's application log
using: - Firewall security policy and rule changes
auditing. With EventLog Analyzer
- Agentless log collection - User logons and logoffs (including failed
- Agent-based log collection logons)
- Log import - Malicious inbound and outbound traffic

Augmented threat intelligence


Real-time event log correlation Integrated compliance management
Start detecting threats from malicious IP
Instantly detect attack attempts and Simplify your IT compliance auditing with
addresses as soon as you install
trace potential security threats predefined report templates for various
EventLog Analyzer, no configuration
by correlating log data with over 30 regulatory mandates, including PCI DSS, 
required. With a built-in global IP threat
predefined rules and a drag-and-drop HIPAA, FISMA, GDPR, SOX, and 
database and STIX/TAXII feed processor,
custom rule builder. EventLog Analyzer ISO 27001. Archive log data for custom time
EventLog Analyzer helps identify any
comes with predefined rules to detect periods to meet the crucial log archival
malicious IP address, URL, or domain
brute force attacks, account lockouts, requirements of most compliance mandates.
interaction with your network in real time
data theft, web server attacks, and a lot by automatically correlating log data with
more. threat feeds.
Core Windows Infrastructure Firewalls, NGFWs, IDS, and IPS Linux and Unix Systems Web Servers
Windows Server 2003 and above   Barracuda Linux  Apache HTTP
Windows Vista and above  Check Point macOS Server Microsoft IIS
Microsoft Windows DHCP Server  Cisco IBM AIX
 Cisco Meraki HP UX Others
Database Platforms  Sophos/Cyberoam Solaris  Threat Analytics 
Microsoft SQL Servers  Fortinet IBM AS/400  CEF Format 
Oracle On-premises Databases   H3C Linux file monitoring SAP ERP
MySQL Logs   Huawei audit logs 
DB2 logs  Juniper Routers and Switches SNMP Trap 
 Juniper NetScreen Cisco  Terminal Server 
Endpoint Security Solutions  Palo Alto HP/Aruba  Printer
 ESET Antivirus  pfSense Arista
 Kaspersky Antivirus  SonicWall
 Microsoft Antimalware Vulnerability Scanners
 Sophos
 Norton Antivirus Nessus 
 Watchguard
 Sophos Antivirus Nmap 
 HP/Aruba
 FireEye Nexpose 
 F5
 Malwarebytes OpenVas 
 FirePower
 McAfee Qualys
 Symantec Endpoint Protection Hypervisors
 Symantec DLP Microsoft Hyper-V 
 Trend Micro VMware
FEATURES
Log Management
EventLog Analyzer provides end-to-end log management, with agent and agentless methods of log collection, custom log parsing,
complete log analysis with reports and alerts, a powerful log search engine, and flexible log archiving options.
Application Auditing
EventLog Analyzer allows you to audit all your critical application servers. With predefined reports for the applications listed here, the
solution also allows you to monitor custom applications. Its powerful custom log parser enables you to easily parse and validate
custom log formats.
Network Device Auditing
EventLog Analyzer monitors all your important network devices such as your firewalls, routers and switches. The solution provides
predefined reports for all your Cisco routers and switches, as well as firewalls from Cisco, SonicWall, Palo Alto Networks, Juniper,
Fortinet, NetScreen, Sophos, Check Point, WatchGuard, and Barracuda.
IT Compliance Reports
EventLog Analyzer enables you to comply with ease with a variety of regulatory policies, namely PCI DSS, ISO 27001, GLBA, SOX,
FISMA, HIPAA, and the newly created GDPR policy. The solution further allows for future needs by enabling you to create custom
compliance reports for new compliance policies.
SIEM
With comprehensive log management combined with extensive security features, EventLog Analyzer is a perfect SIEM platform for
your network. Security features such as log forensics, threat intelligence, external threat mitigation with auditing of vulnerability
scanners and threat applications, make the solution an ideal choice to secure your network and safeguard it against unwanted
breach attempts and critical data theft.
Cross-platform Audit
EventLog Analyzer's reporting console is highly intuitive, with hundreds of predefined reports to meet all your auditing needs, which
can be customized, scheduled, and distributed as you require. The reports comprehensively cover the network, including Windows,
Unix/Linux, IBM AS/400, cloud platforms, vulnerability management systems, and your critical files and folders.

You might also like