EventLog Analyzer

-

Syslog & Event Log Management Tool

EventLog Analyzer System Requirements

This section lists the minimum system requirements for installing and working with EventLog Analyzer.


Hardware Requirements

For 32 Bit Installation

The minimum hardware requirements for installing and working with EventLog Analyzer are given below.

  • 1 GHz, 32-bit (x86) Pentium 5 processor or equivalent
  • 2 GB RAM*
  • 5 GB Hard disk space for the product

For 64 Bit Installation

The minimum hardware requirements for EventLog Analyzer to start running are listed below.

  • 1 GHz, 64-bit (x64) processor or equivalent
  • 2 GB RAM*
  • 5 GB Hard disk space for the product

EventLog Analyzer is optimized for 1024x768 monitor resolution and above.

* The following table recommends the disk space and RAM size requirements of the system where EventLog Analyzer is installed. The disk space and RAM size requirements depends on the number of host sending log information to EventLog Analyzer, the number of host log records received per second or the host log data received per day by EventLog Analyzer. The calculation is worked out for 100 hosts and an average log record size of 350 bytes.

Log Records Rate or Volume RAM Size Hard Disk Space Requirement
Per Month to Archive Logs
100/sec or 4 GB/day 2 GB 85 GB
500/sec or 20 GB/day 4 GB 400 GB
1000/sec or 40 GB/day 8 GB 800 GB

MySql Performance Improvement Parameters

For better performance, you can replace the existing MySQL parameters mentioned in startDB.bat/sh, available under <Eventlog Analyzer Home>\bin directory, with the following MySQL parameter changes corresponding to the EventLog Analyzer servers RAM Size.

Hardware RAM Size

MySQL Parameter Changes

2 GB " --innodb_buffer_pool_size=1200M "
3 GB " --innodb_buffer_pool_size=1500M "
4 GB " --innodb_buffer_pool_size=1500M "

Operating System Requirements

EventLog Analyzer can be installed and run on the following operating systems and versions:

  • Windows™ 7, Vista, 2000, XP, & NT and Windows™ Servers 2000, 2003, 2008 & 2008 R2
  • Linux - RedHat 8.0, 9.0, Enterprise 6.2, Cent OS 6.2, Mandriva 2011.0 (Hydrogen), Fedora 16, Debian 6.0, Ubuntu 10, SUSE
  • VMware

Note: If EventLog Analyzer is installed in SuSE Linux, then ensure that in the mysql-ds.xml file, present under <EventLogAnalyzer_Home>/server/default/deploy you replace localhost mentioned in the following line : <connection-url>jdbc:mysql://localhost:33335/eventlog</connection-url> with the corresponding IP Address or DNS resolvable name of the current system where EventLog Analyzer is installed.

Supported Platforms & Devices

EventLog Analyzer can collect and report on system logs received or collected from the following systems:

  • Windows Server 2008/2003/2000, Windows 7, Windows Vista/XP/2000/NT
  • Linux - RedHat, Debian
  • UNIX - Solaris, HP-UX, IBM AIX
  • IBM AS/400 - Variants V5R1, V5R2, V5R3, V5R4, V5R5 and V6R1
  • Cisco Switches and Routers
  • VMWare - Syslog of versions
  • SNARE for Windows
  • and other syslog supported devices

EventLog Analyzer can analyze and report on logs received from the following applications:

  • IIS W3C Web Server
  • IIS W3C Web Server
  • DHCP - Windows and Linux
  • MS SQL Server
  • Oracle 10 G Release 2 (10.2.0.3) - Audit Logs

Note:

  • For analyzing logs from Windows NT machine, WMI core should have been installed in the Windows NT machine.
  • Syslogs received from SNARE agents for Windows will be displayed as Windows hosts.

Supported Web Browsers

EventLog Analyzer has been tested to support the following browsers and versions:

  • Internet Explorer 5.5 and later
  • Firefox 1.0 and later