A reliable service that provides you with collection, analysis, reporting, real-time alerts, and archival capabilities, in an easy-to-use web-based package
Snare for Windows is a practical and useful service designed to facilitate remote, real-time transfer of event log information.

Snare is a program that facilitates the central collection and processing of Event Log information. All three primary event logs(Application, System and Security) are monitored, and the secondary logs (DNS, Active Directory, and File Replication) are monitored if available. Event information is converted to tab delimited text format, then delivered over UDP to a remote server.

Snare is currently configured to deliver audit information to a SYSLOG server
running on a remote (or local) machine. A configuration utility allows you to set the appropriate syslog target and priority, as well as the target DNS or IP address of the server that should receive the event information.
Eventlog subsystem | snare service | event log | service | security | SYSLOG

It should be noted that many syslog servers are not designed to cope with the sorts of volume of data that multiple snare agents can potentially generate.

The Snare service will automatically start after you have completed the initial
configuration process. It is recommended that you configure each of your event logs to 'overwrite as required', as opposed to 'overwrite > 7 days', which is the default on Windows 2000 machines.

We also recommend that you configure appropriate access controls on the Snare registry entries using regedt32.exe - perhaps restricting the permission to read or modify the keys and values to Local or Domain Administrators only.

Snare stores it's registry settings in: HKEY_LOCAL_MACHINESOFTWAREInterSect AllianceAuditService.

Please remember that event monitoring is a complex area in most modern operating systems, and is not often very granular. Turning on significant event monitoring for a system can often produce unpredictable results, and could seriously detract from the resources available to the rest of your system or network.

We recommend that you have a good understanding of exactly what event information is going to be used for, prior to enabling event monitoring on your servers.
  • Web browser
What's New in This Release:
  • Fixed bug in micro webserver upon multiple requests
Publisher:InterSect Alliance
Size/OS::1 MB / Windows 2K / XP / Vista / Vista 64 bit / 7 / 8 / 8 64 bit / 2003 / 2008 / NT


:Snare for Windows

Related Posts:

  • Comodo Firewall 6.3.297838.2953Firewall with prevention-based protection Comodo Firewall offers the highest levels of security against inbound and outbound threats, stealths your computer's ports against hackers and blocks malicious software from transmi… Read More
  • Network Password Manager 4.2This is a tool for storage and management of passwords within enterprise Network Password Manager is a reliable software that allows multiple users or employees to easily manage passwords within the organization.Network Pass… Read More
  • Baidu PC Faster junk files and optimize startup time Baidu PC Faster is a useful application that can increase your computer's performance, while also keeping malware threats away from it.The software solution can be used to free up… Read More
  • CryptoExpert 8.30Secure offline data storage for Windows CryptoExpert uses a real-time on-the-fly encryption system to provide secure offline storages for Windows users. Physically your documents are stored in the single encrypted vault file… Read More
  • Comodo AntiVirus 6.3.35694.2953Efficient antivirus solution that detects and destroys malware and viruses, which can affect the security of your files and folders Computer viruses - we all dread them. Most of us even have a horror story or two about the… Read More


Post a Comment

Powered by Blogger.

Popular Posts