- Free Edition
- What's New?
- Key Highlights
- Suggested Reading
- All Capabilities
-
Log Management
- Event Log Management
- Syslog Management
- Log Collection
- Agent-less Log Collection
- Agent Based Log collection
- Windows Log Analysis
- Event Log Auditing
- Remote Log Management
- Cloud Log Management
- Security Log Management
- Server Log Management
- Linux Auditing and Reporting
- Auditing Syslog Devices
- Windows Registry Auditing
- Privileged User Activity Auditing
-
Application Log Management
- Application Log Monitoring
- Web Server Auditing
- Database Activity Monitoring
- Database Auditing
- IIS Log Analyzer
- Apache Log Analyzer
- SQL Database Auditing
- VMware Log Analyzer
- Hyper V Event Log Auditing
- MySQL Log Analyzer
- DHCP Server Auditing
- Oracle Database Auditing
- SQL Database Auditing
- IIS FTP Log Analyzer
- IIS Web Log Analyzer
- IIS Viewer
- IIS Log Parser
- Apache Log Viewer
- Apache Log Parser
- Oracle Database Auditing
-
IT Compliance Auditing
- ISO 27001 Compliance
- HIPAA Compliance
- PCI DSS Compliance
- SOX Compliance
- GDPR Compliance
- FISMA Compliance Audit
- GLBA Compliance Audit
- CCPA Compliance Audit
- Cyber Essentials Compliance Audit
- GPG Compliance Audit
- ISLP Compliance Audit
- FERPA Compliance Audit
- NERC Compliance Audit Reports
- PDPA Compliance Audit reports
- CMMC Compliance Audit
- Reports for New Regulatory Compliance
- Customizing Compliance Reports
-
Security Monitoring
- Threat Intelligence
- STIX/TAXII Feed Processor
- Threat Whitelisting
- Real-Time Event Correlation
- Log Forensics
- Incident Management System
- Automated Incident Response
- Linux File Integrity Monitoring
- Detecting Threats in Windows
- External Threat Mitigation
- Malwarebytes Threat Reports
- FireEye Threat Intelligence
- Application Log Management
- Security Information and Event Management (SIEM)
- Real-Time Event Alerts
- Privileged User Activity Auditing
-
Network Device Monitoring
- Network Device Monitoring
- Router Log Auditing
- Switch Log Monitoring
- Firewall Log Analyzer
- Cisco Logs Analyzer
- VPN Log Analyzer
- IDS/IPS Log Monitoring
- Solaris Device Auditing
- Monitoring User Activity in Routers
- Monitoring Router Traffic
- Arista Switch Log Monitoring
- Firewall Traffic Monitoring
- Windows Firewall Auditing
- SonicWall Log Analyzer
- H3C Firewall Auditing
- Barracuda Device Auditing
- Palo Alto Networks Firewall Auditing
- Juniper Device Auditing
- Fortinet Device Auditing
- pfSense Firewall Log Analyzer
- NetScreen Log Analysis
- WatchGuard Traffic Monitoring
- Check Point Device Auditing
- Sophos Log Monitoring
- Huawei Device Monitoring
- HP Log Analysis
- F5 Logs Monitoring
- Fortinet Log Analyzer
- Endpoint Log Management
- System and User Monitoring Reports
-
Log Management
- Product Resources
- Related Products
- Log360 (On-Premise | Cloud) Comprehensive SIEM and UEBA
- ADManager Plus Active Directory Management & Reporting
- ADAudit Plus Real-time Active Directory Auditing and UBA
- ADSelfService Plus Identity security with MFA, SSO, and SSPR
- DataSecurity Plus File server auditing & data discovery
- Exchange Reporter Plus Exchange Server Auditing & Reporting
- M365 Manager Plus Microsoft 365 Management & Reporting Tool
- RecoveryManager Plus Enterprise backup and recovery tool
- SharePoint Manager Plus SharePoint Reporting and Auditing
- AD360 Integrated Identity & Access Management
- AD Free Tools Active Directory FREE Tools
Detecting the activity of hackers and insiders is never easy. Enterprises may have the best of network security solutions to detect network anomalies and mitigate them, but enterprise assets still continue to get compromised. Protecting your network from every attack is impossible, but there is one reliable source that can help you track down the activity of hackers and insiders - Your Log Data. IT administrators need to conduct forensic investigation by searching their log data to track down the network intruder and network problems. Your log data has a detailed record of all activities that happened on the network. IT administrators should leverage the network security intelligence provided by their machine generated log data.
Manually searching your log data is impossible since you have to go through thousands of event records. Wouldn't it be great if you could just type certain keywords and get what you are searching for in seconds? This would totally eliminate you from the painful process of searching through the logs manually. Using EventLog Analyzer's Log Search functionality, you can get the precise information that you need and take proactive measures to secure your network and mitigate network threats.
EventLog Analyzer's Log search engine
EventLog Analyzer's Log search functionality is very easy and allows you to do a free form search. When a user enters a search criterion in the search bar, EventLog Analyzer rapidly drills down into the raw logs and retrieves the results for your search query. The search criteria can consist of Wild-cards, Phrases, and Boolean operators. EventLog Analyzer also allows you to do Grouped searches and Range Searches. EventLog Analyzer does not limit you to a set of predetermined fields while conducting a search. You can search using event ids, severity, source, username, IP address, etc. or combination of all to meet your search requirement.
EventLog Analyzer's log search helps users to perform log forensic analysis. Users can easily drill down through terabytes of raw log data and get what they are looking for, using EventLog Analyzer's log search functionality.
Launch relevant searches from correlation reports
EventLog Analyzer includes a powerful correlation module which helps you identify attack patterns at the earliest. The in-depth correlation reports don't just provide you with a ready-made timeline of the suspicious incident, but also allow you to launch instantaneous log searches with a single click, so you can review all activities involving the compromised devices and user accounts.
Log Search using Basic Search and Advanced Search
EventLog Analyzer provides two different log search capabilities; the Basic Search and the Advanced Search. Both search capabilities provide powerful log search capabilities for your log data.
EventLog Analyzer's Basic and Advanced search allows network administrators to precisely pinpoint the exact log entry which caused the security activity, find the exact time at which the corresponding security event had happened, who initiated the activity and also, the location from where the activity originated.
Basic Search
EventLog Analyzer's Basic Search allows users to search for anything by just typing the search query in the search box. While typing the search query the user gets auto suggestions thus making the search process more simplified. Basic search permits users to use Wild-cards, Phrases, and Boolean operators while framing their search query. Grouped searches and Range Searches can also be conducted when using basic search.
Advanced Search
EventLog Analyzer's Advanced Search has much more sophisticated search capabilities but the ease of use remains the same like basic search. Advanced Search is used when the user is trying to do a root cause analysis by correlating multiple events and attributes. Advanced Search enables users to search by executing the search against multiple search criterion groups at one time. Filters can also be used with Advanced Search, to filter out certain events types, severity and other attributes.
Log Search using 'Tags'
IT administrators, build complex queries to perform Log Search. The real difficulty arises when they want to perform this search more frequently and each time they have to type the entire complex query to get their search results.Wouldn't be easier if those logs are bookmarked and the search is done in a simpler way without typing the query?
EventLog Analyzer provides you with a handy tagging tool that makes your Log Search simpler and more effective.Tagging tool bookmarks your logs and the next time you want to search for those logs, you can just search them by tag name instead of typing the entire search query.This feature also provides you a room for adding/editing the search criteria, enabling you to refine your search anytime.You can also add trouble shooting tips or notes along with your tag, that helps in providing information for other users in analyzing those logs.










