Wednesday December 3, 2008 9:31 AM AEST
Latest Comments
"trend is good antivirus software."
by jack | Dec 3, 2008 7:02 AM
 
"I feel it with you guys. These irritating interruptions on privacy MUST be stopped. It is a ..."
by Jan Wilmans | Dec 2, 2008 7:11 PM
 
"My AVG WILL NOT UPDATE"
by James Downs | Dec 2, 2008 5:58 AM
 
"Concerned man's comments seem to intimate that if I'm using agents all will be well but the ..."
by Werner K | Nov 26, 2008 8:36 PM
 
"That will enhance Microsoft Office system, including SharePoint - good platform for enterprise ..."
by SGE | Nov 25, 2008 3:29 PM
Web

LogRhythm v4.0

  • Email a Friend
  • Print Page
LogRhythm v4.0
Product Info
Supplier:
Product Rating
Features:  5
Ease of Use:  5
Performance:  5
Documentation:  5
Support:  5
Value for Money:  5
Overall Rating:  Overall Rating
 
For: One of the best network log analysis tools we've seen
Against: Nothing that we found
Verdict: Top-end network analysis tool. This gave our Best Buy a strong run for its money, but still we rate it Recommended
Related Articles
In a forensic environment you would save the raw logs in a chain of custody and perform all analysis on LogRhythm's archived data, never taking the chance of corrupting actual evidence.

The appliance is easy to set up and deploy. Since it is watching the network all the time in its role as a log correlator and analyser, it will have everything you need to perform network forensics.

It can take data from most types of logs found on a network. Plus, its Universal Database Log Adapter lets it gather logs from most types of database systems. This is a major forensic benefit.

One of LogRhythm's best features is the Log Miner. This function provides multiple, innovative ways to view log data from multiple sources. The displays tell a story very quickly, leading to drill-downs that access exactly what you are looking for. Newly improved handling of log metadata adds to the high performance.

LogRhythm provides good documentation to meet the needs of both administrators and end users. The product comes with all user, administrator and appliance manuals to make operations and deployment straightforward.

The administrator's guide contains deployment and management documentation as well as "how to" examples to assist users from start to finish. The documentation is well laid out and easy to follow, with good examples and script code.

Support offerings include web, email and phone assistance. LogRhythm also offers a support portal with specific resources to help customers troubleshoot problems. Other available services provided by LogRhythm are deployment and implementation planning, custom configuration, training and managed services.

Starting at US$20,000, this is a very good value, even if all you want it for is forensics. If you plan to implement the LogRhythm appliance as a full featured SIM, it’s an even better deal.

 
Ads by Google
Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 
Tripwire - Click here to win an iTouch
 
 
Vulnerabilities & Exploits Whitepapers