LogBlog

« LogLogic PCI Compliance Suite Debuts | Main | SANS Log Management Summit »

Growing the Log Management Community

With Project Lasso and Log-ED we are signaling our commitment to the growth of the global log management community.

Project Lasso represents hundreds of hours of work on our part. We initially started with the great work done by the Intersect Alliance on "Snare" a Windows-based event management and collection tool. It quickly became clear that in order to meet our customer's needs, we'd have to take a very different tack. Today, less than 25% of Project Lasso is based on Snare - and it relates mostly to event message expansion and Windows SDK inconsistency handling.

The flow control, multi-threading, and remote access is all developed by us. Here are some of the big shifts and main changes we had to make:

  1. From single to multi-threaded. Required in order to collect tens of thousands of event logs centrally.
  2. Central, agentless log collection. This reduces both the processing and storage overhead, and management and maintenance effort for system administrators.
  3. TCP Syslog for faster, more secure transport

We also chose not to do some of the things that Snare offers - like a GUI. We see Project Lasso as principally being used by ISVs, SIs and the LMI community at large in the context of other applications and tools. Our effort here reflects our focus on creating new tools and platforms that will drive Open Log Services.

And we'll be offering and supporting Project Lasso as an ingredient in our overall log management and intelligence solutions.

We'll be posting on Log-ED shortly - you can read more here.

Posted April 30, 2006 in LogLogic News | Permalink


Visit loglogic.com

I ♥ Logs

Subscribe to this blog’s feed RSS

November 2007
Sun Mon Tue Wed Thu Fri Sat
        1 2 3
4 5 6 7 8 9 10
11 12 13 14 15 16 17
18 19 20 21 22 23 24
25 26 27 28 29 30  
Categories
Archives
Blogroll
Blogroll
Compliance
Good Reading
LogLogic
LogLogic Partners
Sites We Watch