Arcsight (Logger)
In order to face the growing need to collect, store and analyze data logs at corporate level, ArcSight Logger is offered in a wide set of modular, preconfigured appliances that supports data collecting with high performances from every source in an automated, high compression and reasonable data archive. With a powerful reporting and notifying engine, ArcSight Logger work as standalone appliance or in team with the wide set of ArcSight products.
From a technical point of view, the Logger from Arcight consists of a platform based on standalone appliances able to store and manage nomalized and/or raw logs from Connectors or straightly from end systems. Each appliance can store in effective way up to 35 TB data log with different retention policy.
- Events storing raw and normalized
- “Certified” data inalterability guarantee
- Terabytes of data logs stored in effective way
- Automatic management of retention policy
- High performance log analysis
img 1
.
The ArcSight log management architecture solution include:
- ArcSight Connectors: furnish a complete collection of every log in the network with control suitable quality;
- ArcSight Logger: fast collect support, effective storage and simple, fast log analysis;
- ArcSight Soluzions: preconfigured contents for specific contest like PCI or Sarbanes-Oxley compliance.