| |
Log Matters - August 2010
Dear Friends of LogLogic,
It’s “magic and revolutionary.” Well actually it’s not and I’m not Steve Jobs, but it is the culmination of hundreds of thousands of man-days of research and development. I am of course talking about our new LogLogic 5 and its world-first Universal Collection Framework and Log Labels features. We’re so proud of this release that there is talk of getting bumper stickers made that say “our product is an honor student.” Often when new products launch people talk about hundreds of new features. Instead, we’ve decided to talk about hundreds of new uses. We now have the ability to capture IT data from almost any source and to truly understand that data, offering you the ability to instrument almost any part of your business. That truly is magic and revolutionary.
It’s also just the beginning of something huge. I assume you or someone from your organization are going to VMWorld this week in San Francisco? If you are, I strongly suggest you ask the VMware people about LogLogic. We’re going to have a super-secret demo on their stand, showing off something super-secret we’ve built to instrument something super-secret they intend to announce in the keynote. You really should check out the demo. You never know, you might get a free bumper sticker. If you can’t make it to the show, we’ll put the demo on our website just as soon as the news breaks.
Bloor Approve The fine people at Bloor Research, one of Europe’s leading IT research and analyst organizations, have created what they call a Bull’s Eye. It resembles a dart board, with vendors pegged in various places to show their technological strengths to the fullest. The closest to the magic 50 – the bull’s eye – wins. Guess where our dart landed?
New Webinar Program We’re kicking off a new season of webinars aimed at solving problems rather than just selling products. The first is about the hundreds of uses the new LogLogic 5 can be tasked with. I will be presenting and I promise to be on my best behavior.
The second webinar features Dr. Anton Chuvakin, Security Warrior. The PCI DSS standard is evolving, with version 2.0 due some time very soon. The summary has just been issued. Do you know how it affects your stance? Dr Anton Chuvakin, author of the book “PCI Compliance: Understand and Implement Effective PCI Data Security Standard Compliance” will talk us through what’s expected, how you should respond, and how you should target your efforts. The focus of course will be on audit trails, tracking and forensics within a best-practice framework provided by LogLogic.
Until next month, thank you.
Andy Morris Marketing Director

|
| |
|
A Perfect Score: SC Magazine gives the LogLogic MX 3020 a 5-Star Review
SC Magazine gave our MX 3020 appliance 5 out of 5 stars in their recent product review. Features? 5/5 stars. Ease of Use? 5/5 stars. Performance? 5/5 stars. Value for Money? 5/5 stars. In fact, the reviewer couldn't find any downside to the product. The Final Verdict, "A venerable product with an excellent pedigree that it lives up to." Yup, we're pretty proud and very pleased. After all, anyone can say that they're the best, but we've actually delivered.
Read more.
Customer Spotlight: VocaLink
VocaLink needed a comprehensive and centralized log management system robust enough to handle the large numbers of logs generated by their systems, to ensure general security and operational efficiency, as well as help them maintain their ISO 27001 certification. VocaLink chose the LogLogic solution because it was the only one to meet all of their requirements with regard to capacity, throughput and stability, and provided the level of centralization they needed. In particular, the LogLogic solution has helped VocaLink maintain their ISO 27001 controls around audit logging – recording user activities, exceptions and information security events.
Read more.
|
On LogBlog |
|
Open Standards: Not everyone gets it By Bill Roth, CMO
In a recent article, our competitor LogRhythm commented on our technology plans which indicated either they don’t understand what we’re doing, or that they think what we’re trying to do will threaten the status quo - and their business. LogRhythm’s VP of Marketing said the following...
Read more.
The LogLogic Story – Chapter 1: The Problem
I’m about to post the full LogLogic story, a short book in 12 chapters. Hopefully it will tell you who we are, what we’re trying to do, and why we’re so very proud of LogLogic 5. The problems we’re trying to address are simple to define but harder to resolve, namely the lack of control, visibility and security in today’s IT shops.
Read more.
The LogLogic Story – Chapter 2: The need.
Driving this desire for greater visibility, control and security is usually one of three things (there are of course other drivers, but these are the big three): compliance, security and the need to operate an efficient IT infrastructure. Regardless of whether you’ve just failed an audit, or you’ve got one looming on the near horizon…or whether your firewall has just been kicked in, or you’re being paranoid because a “like” company has just been breached…or a critical system recently failed and it took you too long to recover - we always get asked for the same 3 things: alerting, searching and reporting.
Read more.
The LogLogic Story – Chapter 3: The Standard Answer
The good news for you is that, as an industry, we’ve recognized your needs and even given them a name – S.I.E.M. or Security Information and Event Management. S.I.E.M. is made up of two separate technologies - the first and most important is S.I.M., Security Information Management. This is the foundational work of collecting all tracking data - be it Logs, Flow, Assets, Users or Files - consolidating it, and then turning it into useful data. It is the S.I.M. technology that allows for the forensic searching and reporting we just discussed. Read more.
The LogLogic Story – Chapter 4: Adding Complexity
This diagram represents the 1st generation of log management solutions. While starting off with the best intentions of adding clarity to a complex network of devices, these 1st generation solutions have simply made things worse. On the left of the slide you’ll see what I call “data assets.” It’s a fact of life that almost all of the technology we use creates an audit trail. Some of those trails are called logs, others flow, sometimes they’re just file dumps. Then there are the consumers of those trails, the analytics engines. And in between are the tangled spaghetti of colored lines connecting the data sources to the consumers. Some S.E.M.’s corroborate, and others totally miss.
Read more.
The LogLogic Story – Chapter 5: The difference is clear Our approach is different. Firstly, there’s no spaghetti! Ours is a simple world where all data, regardless of source or type, is centralized, augmented, enriched, parsed and understood, then smartly passed onto the appropriate visualization tools. We aim to create a virtual information pool that enables you to see 360 degrees of your operation; to provide you insight into the workings of your infrastructure.
Read more.
LogLogic 5.0: And it keeps on getting better. By Dimitri McKay
LogLogic 5 has been years in the making and I’ve been privileged to play with, kick at and test numerous iterations of it since its inception. Here is my top 3 list of front-end features new in 5. I think you will agree they demonstrate a huge leap forward in logging and IT data management technology.
Read more.
Why 360 Insight? By Guy Churchward
With the imminent release of LogLogic 5, our clients can now have true 360 degree Insight of IT data. We’ve always hung our hat on the ability to deliver visibility into the inner workings of an IT environment for security purposes; however, what we’re repeatedly asked is ‘how can you get alerted on something you don’t collect. Obviously this is fraught with complexity, but it plays very well into the formation of a massively scalable IT data warehouse and an essential architectural consideration to deliver peace of mind in the opaque and volatile world of virtualized cloud services.
Read more.
360 Insight Made Real: LogLogic 5
My, haven’t we been busy! In case you missed it in this morning’s news, we just reinvented syslog. We also moved into the data enrichment business by combining log data, flow data, asset data and user data in a veritable pool of awesomeness.
Read more.
Dark Clouds. By Dimitri McKay
Several years ago a new buzzword was formed. “The Cloud”. This was a familiar concept to anyone using “web mail” whether they knew it or not. Email was being offered as a service on the internet. So if you’ve used hotmail, Gmail or Yahoo mail, you’ve used cloud technology. But it goes further than that.
Read more.
More Dark Clouds By Dimitri McKay
Earlier I pointed out that the silver lining in the Cloud is wrapped inside darker outer shell. Today I’ll go through the pro’s and con’s of Cloud Computing. First up, the good news.
Read more.
“Cons: None That We Found”. Another 5 Stars
We hate doing product reviews with magazines. They usually take more work than an actual proof of concept with a real live customer, and of course the pay off is dramatically different – Journalists don’t buy product. However, sometimes a journalist is at the top of their game. They’re smart enough that they shouldn’t rely on the vendor to provide “canned data” or “example reports”.
Read more.
Understanding and Selecting SIEM/Log Management
There’s an analyst firm you may not have heard of called Securosis. They’ve just written a “what the heck is SIEM” paper. Whilst I disagree with their definition of what SIM and SEM are (my definition is here), the paper is well worth your time. It’s long – 40 pages, but there’s something new for everyone in there. I highly recommend you make the time (even if it is sponsored by a competitor).
Read more.
|
| In the News |
|
IT Jungle LogLogic Strives to Create Better Visibility of Log Data The exponential growth of information stored on computers is a well-documented phenomenon. But equally important, at least from the point of view of IT administrators and auditors, is the incredible growth of data generated by servers, PCs, routers, disk arrays, and other computer devices. LogLogic, which develops log management and SIEM solutions, recently introduced new tools aimed at roping in the log data problem. August 24, 2010
SystemiNetwork LogLogic Helps IBM i Shops with Comprehensive IT Data Management LogLogic announces the release of LogLogic 5, its cornerstone product suite for centralizing and structuring IT data. LogLogic 5 is an SIEM solution that is compatible with IBM i. August 20, 2010
CTO Edge LogLogic Expands Role of Log Management LogLogic wants to expand the usefulness of log management in the daily operations of the IT department. August 20, 2010
SC Magazine Centralisation and Data Structuring Included in New Version of LogLogic Software LogLogic has announced the latest version of its log management software. August 19, 2010
eWeek.com LogLogic Enhances SIEM to Improve Data Collection LogLogic is updating its security information and event management platform to streamline the collection of IT data across its IT infrastructure. August 19, 2010
Help Net Security Help Net Security: LogLogic feature review LogLogic 5 was released today. This is a product suite for centralizing and structuring IT data and its features are outlined below. August 18, 2010
Global Security Mag Le MX 3020 de LogLogic reconnu pour sa qualité par SC Magazine Le MX 3020 de LogLogic prouve sa qualité d’outil de gestion des journaux informatiques (logs), avec ses nombreuses fonctions de gestion et corrélation. Cette appliance offre quatre modules intégrés, qui fournissent une visibilité approfondie des problématiques de conformité, des événements de sécurité, et de la sécurité de la base de données. L’outil permet également le stockage intégré afin de répondre aux besoins de collecte des journaux des petites et moyennes entreprises ; ainsi, il n’y a aucun coût supplémentaire de stockage. August 16, 2010
SecurityVibes LogLogic's MX 3020 is awarded 5 stars by SC Magazine US Showing its long pedigree as one of the top log management tools available, the LogLogic MX 3020 appliance has many log correlation and management features. August 16, 2010
Wall Street Journal LogLogic Mention: H-P Ouster a 'Teachable Moment' LogLogic CFO Joe Consul interviewed on how LogLogic has improved expense reporting practices over the past several years. August 15, 2010
InfoSecurity Like falling off a log William Shatner had the right idea. For 80 episodes of the original Star Trek in the late 60s, Captain Kirk kept a log, complete with star date, so that he could look back at any time and remember what happened. Sadly, over 40 years later, modern IT departments often fail to follow his advice. August 10, 2010
Cloud Computing Journal LogLogic to Exhibit at Cloud Expo Silicon Valley SYS-CON Events announced today that LogLogic, a provider of Log Management and Security Event Management solutions, will exhibit at SYS-CON's 7th International Cloud Expo, which will take place on November 1-4, 2010, at the Santa Clara Convention Center in Santa Clara, CA. August 9, 2010
SC Magazine LogLogic MX 3020 Showing its long pedigree as one of the top log management tools available, the LogLogic MX 3020 appliance has many log correlation and management features. This appliance offers four modules that are integrated together to provide an in-depth look into compliance, security events, log management and database security. August 9, 2010
TechNewsWorld Seeking Clarity in the Cloud's Security Haze Corporate execs and IT managers may soon get clearer answers to fuzzy questions regarding how secure or insecure cloud computing really is. In an effort to solve that lingering mystery, the non-profit Open Security Foundation (OSF) late last month launched its cloutage.org website. The new website is aimed at empowering organizations by providing cloud security knowledge and resources. August 9, 2010
|
|
|
|

|
| Product of the Week |
|
LogLogic 5 was featured as part of Network World's Products of the Week for the week of August 23, 2010!
Read more.
|
|

|
|

|
| Introducing Live Chat on LogLogic.com |
Questions about LogLogic? Visit our website and chat live with a LogLogic representative today! |
|

|
|

|
| Upcoming Events |
|
Air Force IT Conference — Montgomery, AL August 30 - September 2, 2010

The theme for the 2010 Air Force IT Conference is “Dominance at the Speed of Need”. Mark your calendars to visit LogLogic at the Renaissance Montgomery Hotel & Spa August 30 – September 2, 2010.
Integralis Roadshow "Sensible Daten im Fokus" — Germany, Austria, Switzerland September 14 - October 7, 2010

Integralis roadshow will provide qualified information for decision making by uncovering different threats and security mechanisms for the securing of databases and data files. The following topics will be discussed: Access Management (Access Control), Data Classification, DRM, DLP, ongoing Monitoring (SIEM) as well as Reporting (Access Audits), Data Privacy, and more.
Register Now.
(ISC)² Secure Boston — Boston, MA September 16, 2010

Security Leadership Series events will keep you up to date on emerging issues, current trends, hot button topics, and will provide unique networking opportunities. Prepare for today’s information security workforce dangers and learn about those that will relentlessly crop up tomorrow. We look forward to see you in Boston!
Learn More.
2010 Annual Redstone Arsenal IT Security Conference & Expo — Huntsville, AL September 20 - 22, 2010

This annual two-day workshop educates attendees on today’s threats in computer security and available solutions. Conference topics will focus on the current IT threats to the military and aerospace communities and the solutions that are available in the marketplace.
More Information Coming Soon
Forum Banca 2010 — Milan, Italy September 28, 2010

Forum Banca is an event organized by IIR – International Institute of research. It is dedicated to banks and will cover innovative strategies to improve IT Governance.
Learn More.
Les Assises de la Securite — Monaco, France October 6 - 9, 2010

Regulatory standards, budgetary constraints and impossible projects have become the daily fare of the security guy. This conference explores the trends of the coming year as well as their technological and legal implications.
Learn More.
|
|

|
|