|
|
|
|
|
|
|
 |
The Log Correlation Engine, aggregates, normalizes, correlates and analyzes event log data from the myriad of devices within your infrastructure. Since the Log Correlation Engine (LCE) is closely integrated with the Security Center, you can centralize both log analysis and vulnerability management for a complete view of your security posture.
Each Security Center can manage one or more LCEs. Each LCE can receive system logs, netflow, IDS event, firewall, honeypot and many other types of records. Security Center users automatically only see LCE events they are authorized to see.
When an LCE receives a log, it normalizes it and then performs highly customizable behavioral profiling and event correlation. Each LCE also enables the Security Center to perform high speed analysis and reporting for many types of events.
An LCE software license is priced on a per installation basis with no limitations on the size of hard drive, number of collecting agents, events-per-second or database licenses. All LCE licenses are sold as upgrades to an existing Security Center. All LCEs support advanced event correlation, statistical anomaly detection and full log search. For sizing pricing, quotes and other information, please contact our sales team.
|


Tenable/451 Log Management Webinar Tenable CEO, Ron Gula; Tenable CSO, Marcus Ranum; and 451 Vice President, Nick Selby discuss the recent 451 study which concluded that log management was more valuable to organizations than correlation. |
|
| |
|