LogLogic Open Sources Project Lasso

| Posted in LMI and SIEM

[Ok, full disclosure, I work for LogLogic, so feel free to junk this if you consider all vendor speak spam ] A quick bit of news, LogLogic today open sourced (GPL) Project Lasso, a centralized Windows event collector. The original code base came from SNARE but now due to the different nature of the collection [...]

More...
May 1st, 2006 | Jian Zhen | No Comments

revelation

| Posted in General Techologies

I just had a revelation, I don’t know how to use Windows anymore. I was trying to shutdown my wife’s Windows PC today and I didn’t know where the shutdown button is!

More...
April 15th, 2006 | Jian Zhen | No Comments

SLA 103: Security Reviews

My third article on the SLA series, SLA 103: Security Reviews, is out. Some service providers, as part of your security-services installation, include a free design review when you buy their managed security service. If your SLA doesn’t include such a review, try negotiating with your service provider to get it. Some service providers require [...]

More...
April 13th, 2006 | Jian Zhen | No Comments

SLA 102: The Service Summary

| Posted in General Techologies

My second article on the SLA series, SLA 102: The Service Summary, is out. In this article, I’ll focus on the service summary. In most SLAs, this section describes the service you will be receiving in general terms. Here are some of the areas you should keep in mind as you negotiate your contract with [...]

More...
March 29th, 2006 | Jian Zhen | No Comments

SLA 101: What to look for in a service-level agreement

| Posted in General Techologies

Computerworld is starting to publish a series of SLA 101 articles, written by yours truely: SLA 101: What to look for in a service-level agreement Many IT administrators aren’t comfortable handing over control of the most critical security components of their infrastructure. But in recent years, security outsourcing has become a popular and viable means [...]

More...
March 15th, 2006 | Jian Zhen | No Comments

Opinion: Making the case for an audit standard

| Posted in General Techologies

Opinion: Making the case for an audit standard Interesting article by Oracle’s CSO Mary Ann Davidson

More...
March 15th, 2006 | Jian Zhen | No Comments

Interpreting the Data: Parallel Analysis with Sawzall

| Posted in LMI and SIEM

Some one on the loganalysis mailing list posted a link to a Google Labs paper: Interpreting the Data: Parallel Analysis with Sawzall. It talks about a distributed aggregation and filtering method using Google’s Sawzall interpreted language. Very interesting paper, the concept of applying distributed computing resources to do work in parallel is not new. LogLogic [...]

More...
February 20th, 2006 | Jian Zhen | No Comments

Security Log Management

Just picked up this book. . Will let you know how it reads.

More...
February 13th, 2006 | Jian Zhen | 1 Comment

DEMO 2006: Podtech interview

| Posted in LMI and SIEM

Another bit of voice from DEMO 2006…An interview by Podtech…

More...
February 11th, 2006 | Jian Zhen | No Comments

DEMO 2006: LogLogic Demo Audio

| Posted in LMI and SIEM

Here’s a MP3 of the LogLogic demo at DEMO 2006, courtesy of TJ’s Weblog. (I trimmed the MP3 to contain just the LogLogic portion, hope that’s ok with TJ. )

More...
February 8th, 2006 | Jian Zhen | No Comments