[ Home | Liste | F.A.Q. | Risorse | Cerca... ]


[ Data: precedente | successivo | indice ] [ Argomento: precedente | successivo | indice ]


Archivio: Novembre 2001 ml@sikurezza.org
Soggetto: Re: access.log
Mittente: Fausto Pasqualetti
Data: 26 Nov 2001 12:02:15 -0000

----- Original Message -----
From: "Raffaello Di Martino" <RDiMartino@bsc.it>
To: <ml@sikurezza.org>
Sent: Monday, November 26, 2001 9:04 AM
Subject: Re: access.log


> > ultimamente mi ritrovo nell'access log del mio webserver un'infinitā di
> > entry
> > per tentativi di attacchi contro iis :) ma risulta improponibile
> analizzarli
> > manualmente.
> > qualcuno conosce qualche log analyzer per gli access log,
>
Il software sviluppato dal gruppo retina:
SecureIIST Application Firewall

SecureIIS protects Microsoft IIS (Internet Information Services) Web servers
from known and unknown attacks. SecureIIS wraps around IIS and works within
it, verifying and analyzing incoming and outgoing Web server data for any
possible security breaches. SecureIIS combines the best features of
Intrusion Detection Systems and Conventional Network Firewalls all into one,
and it is custom tailored to your Web server.

Purchasing Information
You may purchase SecureIIS using any of the methods detailed below.
http://www.eeye.com/html/Products/SecureIIS/Purchase.html



eEye Captain of the IIS Protection Army

VNUNET.COM
UK Technology News, Reviews and Downloads
www.vnunet.com

By David Ludlow, 12/9/2001
http://www.vnunet.com/News/1125400

Note From the eEye SecureIIS Team:
"David Ludlow outlines below what he feels is missing from the current
version of SecureIIS (no remote management; reporting and alerting not
present) and we could not agree more. In fact, our clients have given us the
same feedback when asked what they would like to see in the next version of
SecureIIS. Client feedback is very important to us at eEye, and we have been
working to meet these requests.

"Version 2.0 of SecureIIS will have a brand new graphical reporting system,
and a system for centralized alerting. The next major release after
SecureIIS 2.0 will have capabilities for remote management."

Mai provati questi prodotti ma sapevo che esistevano quindi li ho riportati.
Il consiglio č sempre di installare i service packs, *non usare mai e poi
mai le estensioni di IIS* e vabboh pensa di installare apache...



________________________________________________________
http://www.sikurezza.org - Italian Security Mailing List




[ Home | Liste | F.A.Q. | Risorse | Cerca... ]

www.sikurezza.org - Italian Security Mailing List
(c) 1999-2005