wallix.com

 

 

 

Home > Products > Wallix LogBox - WLB

E-mail Print PDF

logoLOGBOXweb

WALLIX LOGBOX, A LOG COLLECTION AND CENTRALISATION SOLUTION

Companies nowadays must be able to respond to regulatory requirements for traceability and legal archiving. Thanks to Wallix LogBox (WLB), you can collect, centralise and archive activity records or logs. With Wallix Logbox, you improve the efficiency and security of your network by simplifying the collection and pre-analysis of your logs!

Installed at your central site or at remote units, Wallix Logbox collects log files generated by your security devices (Firewall, Proxy, IDS/IPS etc.), your server infrastructure (DHCP, DNS, file servers, DBMS etc.), application servers (messaging, CRM , business apps etc.) as well as your network equipment.

Full-text search

With its built-in search engine, Wallix Logbox can perform full-text searching and sorting, allowing pre-analysis of your network connection, system and application logs.


Log file analysis

Wallix Logbox can also send log files to a SIM (Security Information Management) server, which can analyse and correlate them and summarise the overall risk level of the activity in the form of graphical indicators. This reporting service is based on the partnership between Wallix, which provides the technology in the form of the Wallix Logbox solution, and its MSSP partners in the corporate IT security services market.

Operation

Wallix Logbox collects and centralises logs from the equipment you want to monitor, without the need to install agents, stores the data and sends it on to your SOC (Security Operation Centre), whether it is managed internally or by an MSSP (Managed Security Service Provider). The logs will be stored until they are delivered to the analysis platform and receipt is confirmed.

Wallix Logbox takes the form of an appliance (or VMware image), which can be administered via a web console (log type management, transfer method etc.).

Contact us
Last Updated ( Tuesday, 23 February 2010 14:02 )  
appliancewlbweb

The LogBox solution

Features

• Collection methods (input): PUSH or PULL.
• Collection protocols: Syslog, SSH, FTP, LEA, WMI.
• Filtering in the data collection phase
• Log standardisation and mark-up
• Full text and tag search
• Real-time archiving in the file system and in a database
• Post-processing (output): Syslog, network socket, PostgreSQL, MySQL, flat file
• Time stamp and signature

Examples of log sources supported:

• Wallix TotalSecure 

• Netscreen/Juniper, NetASQ, Arkoon, Fortinet

• CheckPoint FireWall-1/VPN-1
• Cisco PIX
• Microsoft Windows

• Network Appliance etc.

More information

FicheWLBicone

Download
WLB Datasheet

(Pdf)