OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
RE: Better Syslog server

From: Patrik Sternudd (patrik.sternuddcopper.se)
Date: Tue Mar 18 2003 - 02:07:09 CST


This has been discussed in depth on the LogAnalysis mailing list
(everything from alternative servers to a complete
rewrite of the syslog protocol to accomodate more flexibility)

http://lists.shmoo.com/mailman/listinfo/loganalysis

For direct product hints, I suggest you take a look at Syslog-NG.
http://www.balabit.com/products/syslog_ng/
It's a clear favourite of mine. Very flexible.

Then we have msyslog from CORE-SDI. Supports some crypto stuff as well,
but I think syslog-ng may be preferable in your case.
http://sourceforge.net/projects/msyslog/

There are certainly several others out there with varying
quality (there are even a bunch that run on NT/W2K, but I won't
go into that, this being a Sun mailing list and all...)

HTH,

Patrik Sternudd