On Mon, Dec 10, 2012 at 08:10:57PM -0500, TFML wrote:> Any recommendations on a SIEM system?Free? Simple Event Correlator (SEC) is pretty powerful, but obviously has a pretty good learning curve and no GUI. If you have a lot of $$ to spend, ArcSight is probably the industry leader. Ray
Try anyone of these.. http://communities.alienvault.com/ http://www.cyberoam-iview.org/ On Tue, Dec 11, 2012 at 8:31 AM, Ray Van Dolson <rayvd at bludgeon.org> wrote:> ArcSi