LogBlog

« The Age of CSO Pragmatism | Main | GAO says that not complying with FISMA can mean 'high risk' »

Project LASSO Gets An Update

LogLogic-sponsored and community-supported open source project, LASSO has released a new update. This release provides a host of multithreading bugfixes in addition to an improved installation process.  The LogLogic Windows Event Collector v3.0.2 provides an "agent-style" installation and provides greater system control for users. The source code is available for download at SourceForge

LASSO runs on a central server and harvests information from log files on Windows servers. Log event collection is often used by enterprises to automate processes to ensure IT compliance with regulations, predict and remediate network health and provide immutable logs.

LogLogic initiated LASSO, a Windows-based open source software designed to collect Windows event logs, including custom application logs, and provide central collection and transport of Windows log data via TCP syslog to any syslog-NG compatible log receivers. Project LASSO is a viable open source alternative, or complement, to Microsoft’s Windows event collection infrastructure.

The current release of the LogLogic Windows Event Collector v3.0.2 has the following additional enhancements:

The code is more stable and has had several bugs fixed related to multi-threading.  This resolves crashing problems seen at some user sites since the fourth-quarter Microsoft Windows Updates.

The Installer now will not allow more than one instance of LASSO on a computer, and it correctly handles uninstall of any previously existing version of Project LASSO before installing the new version.  Configuration and history information (Lasso.ini, Hostlist.ini, HighWatermarks.log, Repository and Spool files) are preserved during the process.

Note that if you wish to simply uninstall Project Lasso without installing a new version, you may wish to manually delete the Repository and Spool directories afterwards, as they can be quite large.

The Installer now supports an “agent-style” install, where all Lasso.ini configuration parameters are specified in the installation dialogues, and the standard InstallShield® scripted install feature can be used to automate batch installation on multiple machines.

However, it is still necessary to manually configure the “LASSO Windows Event Collector” service parameters after installation.  Please refer to the Lasso User Guide for the recommended settings.

There is a new Lasso.ini configuration parameter, which controls whether the initial DLL scan is done at start-up.  Turning it off can speed up initial start times, for existing LASSO installations that already have filled the DLL Repository:

SkipInitDLLScan,0   Default value; does perform DLL scan at startup.

SkipInitDLLScan,1    Prevents DLL scan at startup.

LASSO is available under the GNU General Public License, it has been downloaded  over 5000 times.

Posted February 01, 2007 in Innovation , Log Management & Intelligence | Permalink


TrackBack

TrackBack URL for this entry:
http://www.loglogic.com/mt/mt-tb.cgi/138

Post a comment

Visit loglogic.com

I ♥ Logs

Subscribe to this blog’s feed RSS

June 2008
Sun Mon Tue Wed Thu Fri Sat
1 2 3 4 5 6 7
8 9 10 11 12 13 14
15 16 17 18 19 20 21
22 23 24 25 26 27 28
29 30          
Categories
Archives
Blogroll
Blogroll
Compliance
Good Reading
LogLogic
LogLogic Partners
Sites We Watch