GFI LANguard Security Event Log Monitor
|
As a network administrator, I have experienced the cryptic and voluminous logs that make log analysis a daunting process. Fortunately, a powerful and easy to use event log monitor gives me great help. That is GFI LANguard Security Event Log Monitor which was published by GFI Software Ltd. If you are a network administrator too, it is just for you!
GFI LANguard Security Event Log Monitor is a log processing solution that provides network-wide control and management of Windows event logs, W3C logs, and Syslog events generated by our network sources. GFI LANguard Security Event Log Monitor includes an intelligent event processor which processes logs and presents information in a centralized, easy and user-friendly fashion.
Following are the detailed features and functions of GFI LANguard Security Event Log Monitor, including: Network-wide analysis of event logs made easy - GFI LANguard Security Event Log Monitor archives and analyses the event logs of all network machines and alerts us in real time to security issues, attacks and other critical events. GFI LANguard Security Event Log Monitor¡¯s intelligent analysis means we do not need to be an Event Guru to be able to: Monitor users attempting to access secured shares and confidential files; Monitor critical servers and create alerts for specific events and conditions occurring on our network; Back up and clear event logs automatically on remote machines; Detect attacks using local user accounts; and much more!"Translates" cryptic windows events - Cryptic logs make log analysis a lengthy process. GFI LANguard Security Event Log Monitor"translates" the often cryptic event descriptions to clear, concise explanations and suggestions for action. Centralized event logging - Event logs are constantly and automatically generated by a user or by an automatic/background process and logs are often stored in disparate locations. GFI LANguard Security Event Log Monitor stores all captured event logs into one SQL database that may also reside remotely. We may also configure scheduled backups of our event logs. High performance scanning engine - GFI LANguard Security Event Log Monitor incorporates a totally re-designed event scanning engine that is fine-tuned for maximum scanning performance. Tests demonstrate that it is able to scan and collect up to 6 million events/hr. Furthermore, its plug-in based methodology allows additional features and modules to be integrated without interfering with existing code. Real-time alerts - GFI LANguard Security Event Log Monitor can send us alerts when key events or intrusions are detected. We can trigger actions such as scripts or send an alert to one or more people by email, network messages, and SMS notifications sent through an email-to-SMS gateway or service. Extended event log support - GFI LANguard Security Event Log Monitor processes various event log types including Windows event logs, Syslog events, and W3C event logs. This allows us to collect more data from the different hardware and software systems that are most commonly available on a typical corporate network. Collect events data distributed over a WAN into one central database - The Database Operations module allows us to collect events data from GFI LANguard Security Event Log Monitor installations on multiple sites and locations across our network into a central database. This enables us to easily monitor thousands of workstations and servers across the network without impacting on bandwidth and storage use. Rule-based event log management - GFI LANguard Security Event Log Monitor ships with a pre-configured set of log processing rules that allow us to filter and classify events that satisfy particular conditions. We can run these default rules without performing any configuration or we can choose to customize these rules or create tailored ones that suite our network infrastructure. Advanced event filtering features - GFI LANguard Security Event Log Monitor¡¯s powerful filtering sieves through the recorded event logs and allows us to browse the required events without deleting any records from our database backend. We may also selectively highlight specific events using a color or the integrated event finder tool. Event log scanning profiles - Scanning profiles allow us to configure the set of event log monitoring rules that will be applied to a specific computer or to a group of computers and provide a centralized way of tuning event log processing rules. We can also setup a set of rules that only apply to workstations in a particular department. We may also create separate complementary profiles that provide additional and more specialized event log rules on a computer by computer basis. View reports on key security information happening on our network - Using the GFI LANguard Security Event Log Monitor reporter, we can create or customize reports including standard reports such as: Account usage reports; Account management reports; Policy changes reports; Object access reports; Application management reports; Print server reports; Windows event log system reports; Events trend reports and so on. Helps to comply with PCI DSS and other regulations - Data logging is key to meeting PCI DSS requirements since logs provide audit trails of all activities in a credit card holder data environment and hence, a comprehensive log management system, such as GFI LANguard Security Event Log Monitor, would provide us with the functionality we need to help us become PCI DSS compliant. In addition, GFI LANguard Security Event Log Monitor provides a free trial for us but only can be free used 30 days and some functions of it are disabled. It is a standalone software and does not need any extra software and hardware requirement. GFI LANguard Security Event Log Monitor does not contain any adware or spyware, so we can use it safely and undisturbedly. It works with Win2000/XP only and its current version is 5.0. The price of the registration version is $495.00 and we can get update and upgrade free. I can insure that it is worth your money.
With all these features, simple interface, excellent usability, low cost and free trial period - why are you still reading? Download the free trial now and experience what powerful and effective it is at once! If you feel this utility is helpful indeed, introduce it to your friends please!
This program is a network-wide event log monitor that retrieves logs from all NT/2000 servers and workstations and immediately alerts the administrator of possible intrusions for immediate host based intrusion detection. Using the LANguard event viewer, you can also create network-wide reports and identify machines being targeted as well as local users trying to hack internal company information.
The license of this software is Free Trial Software, the price is $425, you can free download and get a free trial.

