Skip Links

Network World

  • Social Web 
  • Email 
  • Close

(Comma separation for multiple addresses)
Your Message:

Consolidate your logs and find golden nuggets

LogRhythm provides enterprise log management and analysis
IT Best Practices Alert By Linda Musthaler , Network World , 04/28/2008
Musthaler
Sign up for this newsletter now!

Linda Musthaler's CIO-level look at the latest networking technologies and their benefits and pitfalls.

  • Share/Email
  • Tweet This
  • Comment
  • Print

You may think of your log data as being rather mundane, but have you ever considered that it’s a treasure trove of business intelligence? Of course, it’s only “intelligence” if it can be presented in a way that helps you make sense of what’s really happening on the network and give you insight you can turn into action.

That's the premise behind the offerings of LogRhythm, a Colorado company that provides enterprise log management and analysis. The company was founded in 2003 and its product is in its fourth generation. LogRhythm boasts that it has a 100% customer retention rate, so it must be doing something right.

What the company does is simple, but not easy to accomplish: consolidate all the records from every kind of log you have; normalize the data from the various sources into a standard form so you can interpret it; and perform analysis to help you clearly see problems, root causes and trends.

In a typical enterprise with a wide range of devices and applications, logs from a multitude of sources can account for 25% of the data being generated, totaling millions of individual data points per day. LogRhythm collects all these logs and normalizes the data into one format. Then the data is prioritized and classified for use by people in different job roles, including operations, security and audit. In the end, all the log data is stored so that it’s available for back-end investigations and long-term trending.

The LogRhythm solution is delivered as an appliance, or as software-only. Optional storage from NetApp can be bundled as part of the solution. You can collect the log data from your various sources without an agent or with an agent when circumstances require. Either way, the log data is forwarded to a central server for normalization and analysis.

Customers who seek out the LogRhythm solution usually do so to meet a specific business need; for example, to spot anomalous behavior more easily or to meet a regulatory compliance directive. Then, once the solution is installed, additional ways to use the insight from the information present themselves.

The Tampa International Airport installed LogRhythm to help ensure compliance with the PCI DSS regulation. Kathleen Mullin is the IT Systems Security Manager for the airport. “We first brought LogRhythm in to help us with PCI compliance for our parking application,” says Mullin. “The airport system’s largest revenue source is parking, and many of our customers pay with a credit card when they retrieve their cars. We have to know and prove that our transactions are secure. LogRhythm has great canned reports for PCI, and we can immediately see what the status of our network is.”

Linda Musthaler is a principal analyst with Essential Solutions Corporation.

  • Share/Email
  • Tweet This
  • Comment
  • Print
Partner Content

Blue Stripe Software

www.bluestripe.com/

Improving Application Performance Troubleshooting

Diagnosing why an application is slow is hard, at times taking days or weeks to isolate and resolve. This paper explains the challenges involved using current management tools, provides a 'wish list' for application management and analysis, and explains the need for an application system-wide approach that monitors entire applications, not components.

Download Whitepaper

Virtual Vigilance: Managing Application Performance in Virtual Environments

This paper highlights the impact of virtualization on application performance.  "Managing Application Performance in Virtual Environments" states: "Best-in-Class organizations are predominately taking actions around improving visibility across both physical and virtual systems, assessing the business impact of application performance and understanding interdependencies of applications in virtualized environments."

Download Whitepaper

Application Service Requests: The Missing Link for Pragmatic ITSM

Forrester Research analyst Glenn O'Donnell and BlueStripe co-founder Vic Nyman discuss a breakthrough approach to application problem management. Learn the new approach for ITSM problem management, which provides: Rapid isolation of application slow-downs to specific components for quick problem resolution, 24/7 monitoring for proactive notification of potential issues before end users are impacted and much more.

Register for Webcast

Comment
Login
Forgot your account info?
Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed
Partner Content

Blue Stripe Software

www.bluestripe.com/

Improving Application Performance Troubleshooting

Diagnosing why an application is slow is hard, at times taking days or weeks to isolate and resolve. This paper explains the challenges involved using current management tools, provides a 'wish list' for application management and analysis, and explains the need for an application system-wide approach that monitors entire applications, not components.

Download Whitepaper

Virtual Vigilance: Managing Application Performance in Virtual Environments

This paper highlights the impact of virtualization on application performance.  "Managing Application Performance in Virtual Environments" states: "Best-in-Class organizations are predominately taking actions around improving visibility across both physical and virtual systems, assessing the business impact of application performance and understanding interdependencies of applications in virtualized environments."

Download Whitepaper

Application Service Requests: The Missing Link for Pragmatic ITSM

Forrester Research analyst Glenn O'Donnell and BlueStripe co-founder Vic Nyman discuss a breakthrough approach to application problem management. Learn the new approach for ITSM problem management, which provides: Rapid isolation of application slow-downs to specific components for quick problem resolution, 24/7 monitoring for proactive notification of potential issues before end users are impacted and much more.

Register for Webcast