LogBlog

« Relationships Of Necessity | Main | How Log Intelligence is Transforming IT »

Gov't expert recommends enhanced log data

The government's forensic expert in the UBS PaineWebber case recommends enhanced log files. Keith Jones says that more detailed log files could have offered more information about the computer sabotage. The case involves a systems administrator who was found guilty of attacking the UBS PaineWebber network he had been hired to protect.

InformationWeek has Jones' list of things that UBS did right -- and wrong. He says UBS could have done much better with log data and "was highly impressed with the breadth of UBS' logs, saying it seemed that they "went back forever." But he adds that they could have offered more detailed information. For instance, instead of seeing that someone switched to root, a better log would show which user switched to root, and what commands the user ran."


Posted July 22, 2006 in Log Management & Intelligence | Permalink


TrackBack

TrackBack URL for this entry:
http://www.loglogic.com/mt/mt-tb.cgi/69

Visit loglogic.com

I ♥ Logs

Subscribe to this blog’s feed RSS

November 2007
Sun Mon Tue Wed Thu Fri Sat
        1 2 3
4 5 6 7 8 9 10
11 12 13 14 15 16 17
18 19 20 21 22 23 24
25 26 27 28 29 30  
Categories
Archives
Blogroll
Blogroll
Compliance
Good Reading
LogLogic
LogLogic Partners
Sites We Watch