Main Nav

For those of you who have expressed an interest in log aggregation and data mining (e.g., Splunk), there is an article in the current issue of CIO that describes a few implementations in higher ed. (The title is somewhat misleading.) Can Big Data Help Universities Tackle Security, BYOD? http://www.cio.com/article/712569/Can_Big_Data_Help_Universities_Tackle_... -- Martin Manjak CISSP, GIAC GSEC-G Information Security Officer University at Albany MSC 209 518/437-3813 The University at Albany will never ask you to reveal your password. Please ignore all such requests.

Comments

I brought up Splunk almost four years ago after exposure to the product in a growing (at the time) start-up environment.  My initial goal was to to address the gaping holes in our change management process as it related to config changes to firewall policies and core network equipment -- what was done, when and by whom.  That expanded to alerting on "bad things" -- restarts, network loops, memory errors, etc. -- on all net equipment.  Bringing server data into the fold only added more fun and adding web and application logs provided accurate data not only for focus on security but troubleshooting and planning for system expansion (or not).

Need to locate that missing/lost/stolen iPad?  Notebook has become part of a botnet?  Performance hit on your VMware cluster?  Have some pesky Exchange issue?  Forward the logs, install the appropriate app/dashboard (or just search the raw data), and see what's really going on.  It's Google for your logs and I really can't get enough.  Low profile clients, scalable architecture, reasonably priced, community supported, and darn fast searching.  Yeah, I'll be a fanboy.

- Pat

Patrick N. Gorsuch Manager, Networks and Information Security Gallaudet University 202-651-5070 patrick.gorsuch@gallaudet.edu On 8/1/2012 9:51 AM, Martin Manjak wrote:
For those of you who have expressed an interest in log aggregation and data mining (e.g., Splunk), there is an article in the current issue of CIO that describes a few implementations in higher ed. (The title is somewhat misleading.) Can Big Data Help Universities Tackle Security, BYOD? http://www.cio.com/article/712569/Can_Big_Data_Help_Universities_Tackle_Security_BYOD_?page=1&taxonomyId=3143

Close
Close


Connect: San Antonio
April 22–24
Register Now

Events for all Levels and Interests

Whether you're looking for a conference to attend face-to-face to connect with peers, or for an online event for team professional development, see what's upcoming.

Close

Digital Badges
Member recognition effort
Earn yours >

Career Center


Leadership and Management Programs

EDUCAUSE Institute
Project Management

 

 

Jump Start Your Career Growth

Explore EDUCAUSE professional development opportunities that match your career aspirations and desired level of time investment through our interactive online guide.

 

Close
EDUCAUSE organizes its efforts around three IT Focus Areas

 

 

Join These Programs If Your Focus Is

Close

Get on the Higher Ed IT Map

Employees of EDUCAUSE member institutions and organizations are invited to create individual profiles.
 

 

Close

2015 Strategic Priorities

  • Building the Profession
  • IT as a Game Changer
  • Foundations


Learn More >

Uncommon Thinking for the Common Good™

EDUCAUSE is the foremost community of higher education IT leaders and professionals.