Blogs

IRS Should Audit Itself - or at least its cybersecurity logs
Submitted by jzhen on Sat, 12/20/2008 - 21:31Slashdot is one of the places you can read about a recent report from the inspector general's office at the US Internal Revenue Service, the agency's IT staff hasn't been routinely checking its cybersecurity audit logs. Gasp! What?!? In short, the IRS is not in compliance with the Federal Information Security Management Act, called FISMA for short.
A quote from the report issued Monday and covered by PC World today states: "These weaknesses increase the likelihood that intruders from the Internet could gain access to sensitive taxpayer data residing on the IRS network without being detected."
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article

Appropriate Monitoring for Electronic Patient Records
Submitted by jzhen on Thu, 12/18/2008 - 18:06The Department of Health and Human Services this week released new privacy guidelines (PDF) for electronic health records, the use of which President-elect Barack Obama has promised to support as part of his plan to jump-start the economy. Some quotes from this report: SAFEGUARDS Individually identifiable health information should be protected with reasonable administrative, technical, and physical safeguards to ensure its confidentiality, integrity, and availability and to prevent unauthorized or inappropriate access, use, or disclosure. ACCOUNTABILITY These principles should be implemented, and adherence assured, through appropriate monitoring and other means and methods should be in place to report and mitigate non-adherence and breaches.
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article

Lowly Logs versus Goliath Tech Elite
Submitted by jzhen on Thu, 12/18/2008 - 17:00LogLogic alum Anton Chuvakin is commenting on security sales and the mistake of "selling what you have" instead of "listening to what the customer needs". I want to take this one step further: it seems to me that Silicon Valley has a long-standing tradition to "build technologies" and then "hope that they will come". "They" being the customers in this case.
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article

Podcast: IT systems analytics become more crucial as cloud and SaaS adoption raises complexity bar
Submitted by jzhen on Wed, 12/17/2008 - 08:39Read a full transcript of the discussion. Find it on iTunes/iPod.
Software-as-a-service (SaaS) and cloud computing are changing the nature of IT systems’ performance requirements and heightening expectations for end users from online applications and services.
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article

LogLogic named a finalist for SC Awards 2009!
Submitted by jzhen on Thu, 12/11/2008 - 10:37Now in its 12th year, the SC Awards, hosted by SC Magazine, honor the professionals, companies and products that help fend off security threats confronted in today's corporate world. Yesterday, LogLogic was named a finalist for the "Best Computer Forensics Solution" Reader's Trust award. The winners will be chosen by a panel of volunteer SC Magazine readers. Judges vote on the functionality, manageability, ease-of-use and scalability of each product or service, as well as the customer service and support provided.
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article

Enable visibility and transparency through application logging
Submitted by jzhen on Wed, 12/03/2008 - 10:31LogLogic has been advocating comprehensive logging for all IT components (or configuration items if you are in the ITIL camp) including applications for a long time now. We have worked with many of our customers to ensure that there's 100% collection and analysis of their IT log data. In the last several months there's been a huge uptick in the area of application logging, specifically for the application developers. This is partially due to the general interest in cloud computing and SaaS applications.
To quote a few blogs, Amrit Williams said in his blog "Amazon AWS, Google App Engine, Microsoft Azure, and More - Part 1: Can We Secure The Cloud?" (emphasis mine):
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article

Log management – a safe bet for 2009?
Submitted by jzhen on Tue, 11/25/2008 - 10:41In my last blog, I talked about being optimistic for LogLogic - a "rising star" Silicon Valley company with a funny name. There's no doubt that belts will tighten around IT spending in 2009, but Enterprise Strategy Group analyst, Jon Oltsik, anticipates a few technology areas will remain strong. Namely: virtualization, networking, security, storage, and services.
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article

The Obama plan: accountability and startups with funny names
Submitted by jzhen on Wed, 11/19/2008 - 22:35Now that we have a new president elect, everybody is asking themselves: what does the Obama administration mean for me? LogLogic is no exception and I have been asked the Obama-question by employees and reporters alike. The bottom line is that I am optimistic – the new government appears intend to focus on innovation, transparency and accountability.
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article

Respect Your Customers – Protect their Information
Submitted by jzhen on Tue, 11/18/2008 - 12:08It's always refreshing to talk to customers and be reassured we are helping them improve their businesses day to day. Last week, we announced both The Body Shop International PLC and Ameren Corporation (NYSE: AEE) as new LogLogic customers. Both companies are using LogLogic to meet regulatory compliance – The Body Shop is using LogLogic in the U.S. and will deploy us in the UK, EMEA and APAC to meet the Payment Card Industry Data Security Standard (PCI), and Ameren is using LogLogic to meet the North American Electrical Reliability Corporation (NERC) requirements as well as Sarbanes-Oxley (SOX).
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article

Podcast: ITIL requires better log management and analytics to gain IT operational efficiency, accountability
Submitted by jzhen on Tue, 11/11/2008 - 21:41This podcast was done by Dana Gardner:
Read complete transcript of the discussion. Find it on iTunes/iPod. Learn more.
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article

BriefingsDirect Transcripts: Systems Log Analytics Offers Operators Valued Performance Insights While Setting Stage for IT Transformation Benefits
Submitted by jzhen on Sun, 09/14/2008 - 09:43Despite growing complexity, IT organizations need to reduce operations costs, increase security and provide more insight, clarity, and transparency across multiple IT systems -- even virtualized systems. A number of new tools and approaches are available for gaining contextual information and visibility into what goes on within IT infrastructure.
IT systems information gushes forth from an increasing variety of devices, as well as networks, databases, and lots of physical and virtual servers and blades. Putting this information all in one place, to be analyzed and exploited, far outweighs manual, often paper-based examination. The automated log forensics solutions that capture all the available systems information and aggregate and centralize that information are becoming essential to efficient IT management.
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article

Logging Poll #9 Analysis: Log Protection and Security
Submitted by jzhen on Fri, 09/05/2008 - 18:24This is the analysis of my last poll; the responses are here and also below.
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article

Anton Logging Tip of the Day #16: Virtually There - Journey Into VMWare ESX Log Analysis
Submitted by jzhen on Wed, 08/27/2008 - 10:41Following the new "tradition" of posting tips of the week, I decided to follow along and join the initiative. So, after a long delay, Anton Logging Tip of the Day #16: Virtually There - Journey Into VMWare ESX Log Analysis CISecurity guide for VMWare (here) and DISA STIG for virtual machines (here) both mandate collection and analysis of VM platform logs; none goes into enough details on what to look for in logs. Let's try to shed some light on security-focused log analysis of VMWare ESX v. 3.x logs.
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article

Logging Stories from the Field
Submitted by jzhen on Tue, 08/26/2008 - 08:09Our brilliant field engineer, Dimitri McKay (his blog) brings another fun and insightful story from the field: "I recently went on-site for a proof of concept. I’ve always loved these exercises, as it gives me a chance to help a customer see that which was invisible in the past, whether it be virus-outbreaks, users abusing bandwidth via bit-torrent and file sharing, or VOIP phones assaulting DHCP servers for IP addresses. This particular customer had an interesting configuration. They had been sending their critical/alert and emergency firewall logs to a 3rd party security operations center. That SOC was supposed to monitor the firewall data for any risky traffic, identify any anomalies, and report the instant there’s an issue.
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article

Challenges of Enterprise Cloud Computing
Submitted by jzhen on Sat, 08/23/2008 - 16:24[ Originally posted at OnSaaS ]
Today, the major use of cloud computing for enterprises are still in its infancy (heck the whole cloud computing space is in its infancy). Most enterprises use cloud computing for testing, development and other peripheral tasks. However, most, if any, are using the clouds for production use. This is fairly similar to the virtualization space, where early use of the virtualization technology are for testing and development. Ten years later, we are seeing more and more enterprises adopt virtualization for production use and virtualization has become main stream.
What are these challenges for enterprise cloud computing? I have tried to summarize them here (in no particular order).
- jzhen's blog
- Login or register to post comments
- Read more
- Feed: LogBlog
- Original article
User login
Current Poll
Developer Resources
Active Forum Topics
- Service crashing
- Syslog and Lasso
- Dual output from the Lasso server
- Identifying your Lasso Server
- Enhancement request: Sanitize message before sending
- Search All Via WebService Index Search
- failed get ready, Error 997 ??
- i-Tracing demonstration of creating a dashboard for a LogLogic customer
- Error: CommLasso::sendData(): Sending message stream failed ec(10053): 0 bytes of was already send. Possible duplicate message
- Open Portal Maintenance Notice

Recent Comments
3 weeks 6 days ago
4 weeks 8 hours ago
4 weeks 10 hours ago
4 weeks 1 day ago
4 weeks 3 days ago
4 weeks 3 days ago
4 weeks 3 days ago
4 weeks 4 days ago
4 weeks 5 days ago
4 weeks 5 days ago