Estudo de caso

Página inicial » Recursos » Monitoramento de logs da aplicação » Ferramenta de auditoria de logs do Microsoft SQL Server

Ferramenta de auditoria de logs do Microsoft SQL Server

A auditoria manual das atividades do banco de dados é uma tarefa árdua. A melhor maneira de fazer isso com eficácia é com uma solução abrangente que simplifica e automatiza o monitoramento de atividades e do banco de dados. A solução também deve permitir que os administradores de banco de dados monitorem, rastreiem, identifiquem instantaneamente a causa-raiz de quaisquer problemas operacionais e também detectem acesso não autorizado a dados confidenciais em tempo real.

  • Just ... days left! Are you ready for the GDPR
  • Get to know about the challenges and impacts of the all new GDPR

Auditoria de logs do Microsoft SQL Server com o EventLog Analyzer

O EventLog Analyzer é uma ferramenta abrangente de monitoramento de atividades do banco de dados do MS SQL que ajuda a monitorar todas as atividades, acessos e alterações de conta de servidor no banco de dados do Microsoft SQL Server. Aqui estão alguns dos principais recursos do EventLog Analyzer.

Relatórios de auditoria DDL do SQL Server:

SQL Server DDL auditing reports

  • Monitor and track the changes happening at the database structural level, such as changes to the tables, views, procedures, triggers, schema, and more.
  • With intuitive graphical reports, get the details of who made what change, when, and from where.
  • Get real-time email or SMS notifications on any DDL level changes. Read more »

Available SQL Audit Reports

Created Databases | Dropped Databases | Altered Databases | Created Tables | Dropped Tables | Altered Tables | Created Views | Dropped Views | Altered Views | Created Stored Procedures | Dropped Stored Procedures | Altered Stored Procedures | Created Index | Dropped Index | Altered Index | Created Triggers | Dropped Triggers | Altered Triggers | Created Schemas | Altered Schemas | Dropped Schemas

Auditing SQL Server DML Activities:

Auditing SQL Server DML Activities

  • Audit functional-level activities happening in your database with EventLog Analyzer's predefined reports.
  • Get to know when functional queries are executed, who executed them, and from where.
  • Instantly track all change activities such as data being viewed, updated, deleted, or new entries being added to your confidential data. Read more »

Available SQL Audit Reports

Selected Tables | Inserted Tables | Updated Tables | Deleted Tables | Execute Command | Recieve Command | Check reference command executed | Inserted Schemas | Selected Schemas | Updated Schemas | Deleted Schemas

Auditing SQL Server Accounts:

Managing and auditing database server accounts is critical in setting up authorizations for resources both inside and out of your database. EventLog Analyzer simplifies your database account management with real-time alerts and predefined reports to:

Auditing SQL Server Accounts

  • Track every change made to any account with respect to the users, logons and logoffs, passwords, and more.
  • Know when a privileged account is created, deleted, or modified.
  • Audit logon and logoff activities, and learn the reasons behind logon failures.
  • Instantly know when the password of a critical account gets changed, and more. Read more »

Available SQL Audit Reports

User Created | User Dropped | User Altered | Login Created | Login Dropped | Login Altered | DataBase Role Created | DataBase Role Dropped | DataBase Role Altered | Application Role Created | Application Role Dropped | Application Role Altered | Credential Created | Credential Dropped | Credential Altered | Own Password Changes | Failed Own password changes | Password changes | Password changes Failed | Password resets | Password resets Failed | Own password resets | Failed Own password resets | Unlocked accounts | Enabled users | Disabled users

Auditing SQL Server Activities:

Auditing SQL Server Activities

  • With EventLog Analyzer's on-the-fly reports, quickly audit MS SQL Server activities such as startups, shutdowns, logons, logon failures, and more.
  • Get detailed reports on database backup, restoration, audit, audit specifications, administrator authorities, and more.
  • Learn the frequency of logon activities of your database, and visualize trend patterns of any logon failures. Read more »

Available SQL Audit Reports

Database backup report | Database restoration report | Transaction log backup report | Admin authority changes report | Permission changes report | Owner Changes report | Created server roles | Dropped server roles | Altered server roles | Created Server Audits | Dropped Server Audits | Altered server audits | Created Server Audit Specifications | Dropped Server Audit Specifications | Altered Server Audit Specifications | Created Database Audit Specifications | Dropped Database Audit Specifications | Altered Database Audit Specifications | Changed Audit Sessions | Shutdown and Failure Audits | Trace Audit C2 On | Trace Audit C2 Off | Started Trace Audits | Stopped Trace Audits | Server Startups | Server shutdowns | Logons | Failure logons | Logout Accounts | Top logons based on user | Top logons based on remote hosts | Top failure logons based on users | Top failure logons based on remote hosts | Logons Trend | Failed Logons Trend | Event Trend report

Mitigate SQL Server Security Attacks:

EventLog Analyzer helps mitigate external and internal security breaches by providing detailed reports and real-time alerts on various security attacks that can occur in your database.This solution:

Mitigate SQL Server Security Attacks

  • Provides detailed reports on SQL injection and denial of service attacks, to help you conduct detailed forensic analysis on how the attack happened.
  • Alerts you in real time about important events including account lockouts, privilege abuses, unauthorized copying of sensitive data, and more, thus helping you to instantly react to security breaches. Read more »

Available SQL Audit Reports

Privilege abuses | Unauthorized copies of sensitive data | Account Lockouts | Storage media exposure | SQL Injection | Denial of Service

Granular auditing of user data in SQL Servers:

Granular auditing of user data in SQL Servers

Many enterprises use SQL Servers to store their customers' personal data. EventLog Analyzer has several reports that can help you stay on top of critical changes performed in your SQL Servers, including reports on:

  • Modifications made to columns containing highly confidential information.
  • Each users' incumbent permissions and security changes in the SQL Server.
  • The time at which each user last logged in to the SQL Server.

Available SQL Audit Reports

Column Modified | Delete Operations | Security Changes | Permissions Information | Last Login Time | Logins Information 

Correlating SQL server logs

Many organizations use correlation as a method to understand and make sense of the connection between different logs originating from different sources. EventLog Analyzer's powerful correlation engine efficiently identifies defined attack patterns within your logs. Its correlation module offers many useful features, including:

Available SQL Audit Reports

Repeated SQL injection attempts in DB | Repeated SQL injection attempts | Suspicious SQL backup activity

Use Search and Advanced Search option on SQL logs

EventLog Analyzer provides a dedicated section for log data search, where you can search the raw SQL logs and detect network anomalies like mis-configurations, applications errors, etc. Click the 'Search' tab in the UI.

MS SQL compliance manager

Comply with regulations such as the GDPR, HIPAA, SOX, PCI-DSS and more using EventLog Analyzer's integrated compliance management module. The prebuilt compliance report templates cover SQL activities such as DDL changes, DML changes, account changes and more, as required by the regulation. A dedicated compliance dashboard shows successful and failed events along with the instances of non-compliance, if any. You can also choose from prebuilt alerts to notify you of critical compliance issues by email or SMS. These features will help you breeze through compliance audits.

To know more about SQL auditing, download our free solution brief SQL server auditing with EventLog Analyzer

Auditing Microsoft SQL servers is not a hassle anymore.

Get Your Free Trial

Thanks!

Your download is in progress and it will be completed in just a few seconds!
If you face any issues, download manually here

 

Related videos

 

 

 

Bottom banner

 

A solução EventLog Analyser tem a confiança de

Los Alamos National Bank Michigan State University
Panasonic Comcast
Oklahoma State University IBM
Accenture Bank of America
Infosys
Ernst Young

Opinião dos clientes

  • Credit Union of Denver vem utilizando o EventLog Analyzer por mais de quatro anos para o monitoramento de atividades de usuários internos. O EventLog Analyzer agrega valor na relação custo-benefício como uma ferramenta forense de rede e para due diligence regulatória. Este produto pode rapidamente ser dimensionado para atender às necessidades dos nossos negócios dinâmicos.
    Benjamin Shumaker
    Vice-presidente de TI/ISO
    Credit Union of Denver
  • O que mais gosto na aplicação é a interface de usuário bem estruturada e os relatórios automatizados. É uma imensa ajuda para os técnicos de rede monitorarem todos os dispositivos em um único painel. Os relatórios pré-configurados são uma obra de arte inteligente.
    Joseph Graziano, MCSE CCA VCP
    Engenheiro de Rede Sênior
    Citadel
  • O EventLog Analyzer é uma boa solução de alerta e geração de relatórios de logs de eventos para as nossas necessidades de tecnologia da informação. Ele reduz o tempo gasto na filtragem de logs de eventos e fornece notificações quase em tempo real de alertas definidos administrativamente.
    Joseph E. Veretto
    Especialista em Revisão de Operações
    Agência de Sistemas de Informação
    Florida Department of Transportation
  • Os logs de eventos do Windows e Syslogs dos dispositivos constituem uma sinopse em tempo real do que está acontecendo em um computador ou rede. O EventLog Analyzer é uma ferramenta econômica, funcional e fácil de usar que me permite saber o que está acontecendo na rede ao enviar alertas e relatórios, tanto em tempo real quanto agendados. É uma aplicação premium com um sistema de detecção de intrusão de software.
    Jim Lloyd
    Gerente de Sistemas da Informação
    First Mountain Bank

Prêmios e Reconhecimentos

  •  
  • Info Security's 2014 Global Excellence Awards
  • Info Security’s 2013 Global Excellence Awards - Silver Winner
  •  

Um único painel para gerenciamento abrangente de logs