|
GFI LANguard Security Event Log Monitor (S.E.L.M.)
Many companies mistakenly assume that unauthorized access is only attempted by external parties. Actually, the majority of corporate security threats stem from insider hacking, against which a firewall offers no protection. GFI LANguard S.E.L.M. monitors the security event logs of all your Windows NT/2000/XP/2003 servers and workstations and alerts you to possible intrusions/attacks in real time.
Key Features Include:
Real Time Alerts
Due to real time monitoring, GFI LANguard S.E.L.M. sends immediate notification to system administrators when key events or intrusions are detected.
Monitor IIS, Exchange, ISA & SQL Servers
Using GFI LANguard S.E.L.M., you can proactively monitor your mission-critical servers. Monitoring events generated by Microsoft ISA Server, Exchange Server, SQL Server and IIS
can prevent network disasters from occurring.
Customized Report Generation
Using standard or custom reports, GFI can "translate" the often-cryptic descriptions into clear, concise explanations and make suggestions for action.
Advanced Filtering Options
GFI LANguard’s advanced capabilities solve fragmented audit trails by consolidating all security events into a central database. With this consolidated data, the Event Viewer can utilize advanced filtering techniques on criteria such as user, computer and PC security level.
Scalable To Support WANs and LANs
GFI LANguard S.E.L.M’s infrastructure was designed to allow real time collection of security events in enterprises of all sizes, without impacting network performance.
Rules-Based Event Log Management
GFI LANguard S.E.L.M. includes a powerful rules interface that will create alerts for specific events and conditions occurring on your network, as set by your specifications. For example, you’ll be notified immediately if a particular user tries to access a specific file.
Monitor Access To Files
By auditing logon failures occurring in your network, you can check who is trying to access important files. This enables you to preempt more extensive network “attacks” or hacking attempts based on social engineering. GFI LANguard also allows you to audit successful access to files, meaning you can record who accessed which files and when.
Network-Wide Event Log Management
Besides analyzing security event logs, GFI LANguard S.E.L.M. can assess application, system and other event logs as well. You can back up and clear event logs on all remote machines in your network automatically, and view, report and filter events network-wide, instead of just per machine. Because GFI LANguard S.E.L.M. collects all events in one central database, it’s easy to create network-wide reports and custom filters.
With GFI LANguard S.E.L.M., administrators can enjoy peace of mind knowing that their system is being monitored 24/7 against internal attacks. |