sunhux
asked on
suggestion for an easy to set up / use mini SIEM
we need to set up within 8 weeks a small SIEM for 30 servers n hopefully its something low-cost, fast to set up n easy to use/manage.
Solarwinds, ManageEngine, Websense or ?
Solarwinds, ManageEngine, Websense or ?
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
I'm not sure if LogRhythm is exactly a low cost "mini SIEM" (this also depends on what exactly your definition is). AlienVault ranks well based on Gartner's research. The big thing you need where the data collector is. Many products allow for agentless, but you would definitely have to have an onsite collector for that to work. Every product works a bit differently in this regard.
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
We have quite a few Solaris x86 and don't want to install agents in them:
often Solaris requires dependent packages ; at least with RHEL, the
packages are widely available