MD4 Overview of logs: The importance of logs Flashcards

1
Q

Logs

A

A log is a record of events that occur within an organization’s systems.

Logs contain multiple entries which detail information about a specific event or occurrence.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Log details

A

Include details like date, time, location, the action made, and the names of the users or systems who performed the action.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Log analysis

A

Log analysis is the process of examining logs to identify events of interest.

It’s helpful to be selective in what we log, so that we can log efficiently.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

SIEM tools

A

SIEM tools provide security professionals with a high-level overview of what happens in a network. SIEM tools do this by first collecting data from multiple data sources. Then, the data gets aggregated or centralized in one place. Finally, the diverse log formats get normalized or converted into a single preferred format.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

how do logs get collected?

A

Software known as log forwarders collect logs from various sources and automatically forward them to a centralized log repository for storage.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

log types

A

Network

System

Application

Security logs

Authentication logs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly