An Approach to Improving Network Security Using Log Analysis Cover Image

An Approach to Improving Network Security Using Log Analysis
An Approach to Improving Network Security Using Log Analysis

Author(s): Marija Zajeganović, Milan Pavlović, Danica Tartalja Mamula, Silva Kostić
Subject(s): Social Sciences
Published by: Udruženje ekonomista i menadžera Balkana
Keywords: Log messages; Troubleshooting; Malicious activities.
Summary/Abstract: Troubleshooting is the process of detecting, identifying and resolving problems within a computer network by means of specific methods, tools and operations. Troubleshooting implies following a set of procedures or steps that conform to the security standards and policies of a company. Diagnosing the source of a problem can be done by tools for system monitoring, recording log messages, manual testing of device configuration, as well as by tools for device operation analysis. The procedure for using log messages to resolve both common problems and those caused by attacks is explained in this paper. Furthermore, this paper describes the way security threat management systems use the contents of log messages to analyze hardware problems and malicious activities.

Toggle Accessibility Mode