作者: Jason Michael DeStefano , Ralph D. Jenson
DOI:
关键词:
摘要: A system and method is disclosed for collecting, storing reporting raw log data from log-producing devices such as firewalls routers. The may be both local remote—i.e., linked to a server via LAN and/or WAN. analyzer at remote location gathers that into time-defined sets then sends those over WAN (which the Internet) using first protocol. Local send their second forwards an appropriate parsing, summarizing storage in one or more databases. combines of given time period stores them area data. central management station used query various databases merge database reports single report display.