Académique Documents
Professionnel Documents
Culture Documents
Demonstration
1
PRESENTATION OF THE COMPANY
Business areas
Fonded in 2018
INFORMATOIN SYSTEM SOLUTIONS
Located in Bessengue
INFRASTRUCTURE AND NETWORK
SOLUTIONS
CERTIFIED TRAINERS
SYSTEM
ADMINISTRATION Partners
5
INTRODUCTION
CONTEXT
4 year internship
th
5
THE PROBLEM
3
PROJECT MANAGMENT
provisional schedule
5
PRESENTATION OF THE PROJECT
HOW DOES IT
GOALS FUNCTIONALITIES
WORKS ?
5
HOW DOES IT WORKS ?
4
GOALS
Manage the large volume of logs from multiple sources
5
UTILITIES
6
STUDY OF THE PROJECT
SIEM LOG COLLECTION LOG LOG
ARCHITECTURE & AGREGATION NORMALIZATION CORRELATION
5
ARCHICTETURE
SIEM Architecture
7
ARCHICTETURE
Project architecture
7
WHAT IS A LOG ?
A log is a time-stamped logbook, which orders the various events that
have occurred on a computer, server, etc.
11
Log collection and aggregation
In 4 ways :
Syslogs
By direct acces
11
Log normalization
This step allows you to put the logs in the same unique format to make them more usable
11
11
Log correlation
First of all, to correlate is to connect
Resumé
11
SIEM SOLUTIONS
A distinction is made between open source and paid solutions
8
Among paiying solutions...
9
Matrix of choice
Legend
Featured
Not featured
9
SOLUTIONS CHOOSED
open source
Payante 10
Budget
5
ADDING A HIDS AGENT
5
CONFIGURATION : ADD OF A RULE
5
RESULTS
5
DEMONSTRATION
11
CONCLUSION
This step allows you to put the logs in the same unique format to make them more usable
11
THANK YOU FOR YOUR ATTENTION
11