• Skip Navigation |
  • Accessibility 
IT-Director.com Logo
  • Metastorm leverages Azure to leap into Cloud-based collaborative modelling
  • Uwhat?
  • A Clear Message for Vendors In the SMB Technology Market
 

Main navigation - go to a section of this website:

  • ARCHIVE
  • PAPERS
  • EVENTS
  • NEWSWIRE
  • BLOGS

  

Member Login | Become a Member

 
 
DOMAINS
  • Enterprise
  • SME
  • Business Issues
    • Compliance
    • Regulation
    • Employment
    • Innovation
    • Security & Risk
    • Costs
    • Change
    • Quality
  • Technology
  • Services
  • Channels
FEATURED EVENTS
  • Data Protection Essential Knowledge - Level 2
    5th August
    Edinburgh, United Kingdom
  • Enterprise Architects TOGAF™ v9 Level 1 & Level 2 Training course - Special UK price of £1599 plus 17.5% vat
    23rd August - 26th August
    London, United Kingdom
POPULAR PAPERS
  • Telecoms re-invention - death of the traditional telco by Quocirca
  • A gift from IT to the business by Quocirca
  • Keeping online orders flowing by Quocirca
TRANSLATE PAGE



USEFUL LINKS
  • Last 7 Days
  • Archives
  • Market Place
  • Top Articles
INTERACT
  • Advertising
  • Site Feedback
  • Newsletters
  • Contact Us
  • Registration
CONTENT FEED

Business Issues
RSS Feed:

RSS Icon

What is RSS?

RANDOM QUOTE
Observations - "Alcohol is the anaesthesia by which we endure the operation of life." - George Bernard Shaw

ADVERTISEMENT
Analysis

eIQnetworks Seeks Status Industry Acceptance

Lawrence Dietz By: Lawrence Dietz, Research Director, Sageza Group, Inc.
Published: 19th October 2007
Copyright Sageza Group, Inc. © 2007
Logo for Sageza Group, Inc.
Page Tools

Request Reprints
Tell A Friend
Contact Author

More from author
  • January 2008
    Novell enhanced single sign-on includes Vista support
  • January 2008
    SailPoint identity tool may be effective catalyst in Identity Management
  • December 2007
    EMC Acquisition of Voyence Strengthens Configuration and Change Management
  • December 2007
    Trend Micro enters DLP fray by acquiring Provilla
  • December 2007
    Is Bot Defense the IDS of 2008?
  • December 2007
    Citrix Session Record/Play Back feature may be eDiscovery Award winner
  • November 2007
    IBM beefs up DB2 with encryption from Vormetric

eIQnetworks, Inc. has announced Open Log Format, the industry's first open source event-logging standard. Unlike proprietary standards, the multi vendor-supported OLF promotes interoperability that enables organizations to more easily manage and understand the log data collected from network devices, systems, and applications. OLF does not require certification and is available for any vendor or organization to adopt at no cost. A number of vendors including Astaro, Clavister, Cyberoam, iPolicy Networks, Secure Computing, and Top Layer Networks have pledged support for the OLF standard. OLF is available for immediate download at http://www.openlogformat.org/.

OLF provides a fully extensible open source event-logging standard across all devices, systems, and applications that vendors can adopt to support logging requirements. Vendors and end users can also add additional log details to showcase specific solution functionality. eIQnetworks promotes the ability of OLF to alleviate concerns around log-format compatibility with existing SIM technologies, and obviate the need to create custom connectors to integrate and interpret vendor-specific logs, as is the case with proprietary log formats.

Evolving security challenges coupled with compliance and regulatory mandates have made it essential for organizations to collect, monitor, and analyze log data across the enterprise. Unfortunately each device, system, and application uses a unique and proprietary format, making it almost impossible to decipher log data. OLF offers the industry an alternative that eases the log collection and management process. Event logging is essentially the plumbing of Security Information Management. A Holy Grail of sorts has always been the ability to perform correlation analysis across the variety of sensors and devices that accumulate log data. Larger software vendors in particular have tried to implement management suites that help to make sense of the mounds and mounds of data that is thrown off by security devices in particular. Analysis of complex, heterogeneous data is a nightmare and we are a strong believer in the need for standardization of event data to facilitate analysis and information sharing.

As the nature of attacks and threats continues to morph, adapt, and accelerate in variety, defenders will have to be equally cagey in minimizing their vulnerability to attack. A standard also has the potential of significantly reducing the cost of analysis by minimizing the need for expensive proprietary connectors for vendor-specific logs. We applaud the efforts of eIQnetworks and hope that larger, more entrenched vendors will adopt such standards to benefit the industry as a whole.

Reader Comments

Sorry, we are no longer accepting comments on this item. We suggest trying to contact the author directly.

  • Site Map
  • | Terms of Use
  • | Privacy

Published by: IT Analysis Communications Ltd.
T: +44 (0)1908 880760 | F: +44 (0)1908 880761