<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://msmvps.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>システム管理な雑記 -- Sleeve notes of a sysadmin -- : Tools</title><link>http://msmvps.com/blogs/yamaken/archive/tags/Tools/default.aspx</link><description>Tags: Tools</description><dc:language>en</dc:language><generator>CommunityServer 2008.5 SP2 (Build: 40407.4157)</generator><item><title>Honeynet Security Console</title><link>http://msmvps.com/blogs/yamaken/archive/2004/05/16/6546.aspx</link><pubDate>Sun, 16 May 2004 23:36:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:6546</guid><dc:creator>kenji</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/yamaken/rsscomments.aspx?PostID=6546</wfw:commentRss><comments>http://msmvps.com/blogs/yamaken/archive/2004/05/16/6546.aspx#comments</comments><description>&lt;p&gt;From &lt;a title="seculogger" href="http://www.7th-angel.net/seculog/" target="_blank"&gt;seculogger&lt;/a&gt;'s &lt;a href="http://www.7th-angel.net/seculog/item/548.html" target="_blank"&gt;blog&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://www.activeworx.org/programs/hsc/index.htm"&gt;Honeynet Security Console&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;It seems very neat. I decided that I should evaluate this, with &lt;a href="http://project.honeynet.org/tools/sebek/" target="_blank"&gt;sebek!&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=6546" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Misc/default.aspx">Misc</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Security+tips/default.aspx">Security tips</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Tools/default.aspx">Tools</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Interoperability/default.aspx">Interoperability</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Windows+management/default.aspx">Windows management</category></item><item><title>Note: [IIS] How to have NNTP Feed?</title><link>http://msmvps.com/blogs/yamaken/archive/2004/05/09/6118.aspx</link><pubDate>Sun, 09 May 2004 22:01:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:6118</guid><dc:creator>kenji</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/yamaken/rsscomments.aspx?PostID=6118</wfw:commentRss><comments>http://msmvps.com/blogs/yamaken/archive/2004/05/09/6118.aspx#comments</comments><description>&lt;p&gt;From Bernard's article.&lt;br /&gt;&lt;a id="_ctl0__ctl2_TitleUrl" href="/bernard/posts/4455.aspx" target="_blank"&gt;Errors in IIS 6.0 Documentation&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;I have once tested this NNTP Feed feature of IIS 6.0, with Shavlik's news server. &lt;br /&gt;It seems I have to dig more on this.;-)&lt;/p&gt;
&lt;p&gt;Thanks, Bernard!&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=6118" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Misc/default.aspx">Misc</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Tools/default.aspx">Tools</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Server+management/default.aspx">Server management</category></item><item><title>Tool: Quest Software Quest Central (Freeware)</title><link>http://msmvps.com/blogs/yamaken/archive/2004/05/10/tool-quest-software-quest-central-freeware.aspx</link><pubDate>Sun, 09 May 2004 21:36:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:6115</guid><dc:creator>kenji</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/yamaken/rsscomments.aspx?PostID=6115</wfw:commentRss><comments>http://msmvps.com/blogs/yamaken/archive/2004/05/10/tool-quest-software-quest-central-freeware.aspx#comments</comments><description>&lt;p&gt;From &lt;a href="http://sqljunkies.com/News/0059AB25-88B2-445C-9A95-2278E067E10A.scuk" target="_blank"&gt;SQLJunkies.&lt;/a&gt; &lt;/p&gt;
&lt;p&gt;Quest Software Quest Central for SQL SERVER - FREEWARE Now Available&lt;br /&gt;&lt;a href="http://www.quest.com/quest_central/sql_server/freeware/" target="_blank"&gt;http://www.quest.com/quest_central/sql_server/freeware/&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;It&amp;nbsp;features things like this:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Database Administration &lt;/li&gt;
&lt;li&gt;Space Management &lt;/li&gt;
&lt;li&gt;24x7 Monitoring &lt;/li&gt;
&lt;li&gt;Performance Diagnostics with Spotlight &lt;/li&gt;
&lt;li&gt;Database Analysis &lt;/li&gt;
&lt;li&gt;Load Testing and Data Generation&lt;/li&gt;&lt;/ul&gt;
&lt;p&gt;Hmm, sounds not too bad, you know.&lt;br /&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=6115" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Tools/default.aspx">Tools</category></item><item><title>Tool: Syslog Turbo, DHCP Turbo, etc.</title><link>http://msmvps.com/blogs/yamaken/archive/2004/05/10/tool-syslog-turbo-dhcp-turbo-etc.aspx</link><pubDate>Sun, 09 May 2004 19:48:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:6100</guid><dc:creator>kenji</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/yamaken/rsscomments.aspx?PostID=6100</wfw:commentRss><comments>http://msmvps.com/blogs/yamaken/archive/2004/05/10/tool-syslog-turbo-dhcp-turbo-etc.aspx#comments</comments><description>&lt;p&gt;Softwares from Weird-Solution seems somewhat cool.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://www.weird-solutions.com/" target="_blank"&gt;http://www.weird-solutions.com/&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;As for Syslog Turbo there are things that is helpful for daily sysadmin jobs, like analysis and log rotation features. We can manipulate it with a sql-like dialect, which may be fairly useful as long as you are familiar with SQL.&lt;/p&gt;
&lt;p&gt;There are other easy-to-manipulate server softwares like DHCP, BOOTP, and TFTP so please check them out.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=6100" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Tools/default.aspx">Tools</category></item><item><title>Tool: ieSpell</title><link>http://msmvps.com/blogs/yamaken/archive/2004/05/09/tool-iespell.aspx</link><pubDate>Sun, 09 May 2004 08:25:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:6086</guid><dc:creator>kenji</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/yamaken/rsscomments.aspx?PostID=6086</wfw:commentRss><comments>http://msmvps.com/blogs/yamaken/archive/2004/05/09/tool-iespell.aspx#comments</comments><description>&lt;p&gt;A spell checker for IE. I found it when I did some spell-checks on the previous article. This tool is for English only, it seems. Still, it is very cozy.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://www.iespell.com/" target="_blank"&gt;ieSpell - A Spell Checker for Internet Explorer&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=6086" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Tools/default.aspx">Tools</category></item><item><title>Just a note of log consolidation issues.</title><link>http://msmvps.com/blogs/yamaken/archive/2004/05/08/6082.aspx</link><pubDate>Sun, 09 May 2004 04:13:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:6082</guid><dc:creator>kenji</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/yamaken/rsscomments.aspx?PostID=6082</wfw:commentRss><comments>http://msmvps.com/blogs/yamaken/archive/2004/05/08/6082.aspx#comments</comments><description>&lt;p&gt;There are numbers of tasks around sysadmins and security engineers at the data centers, which include log management and monitoring the servers/clients to check if there is an unusual thing happening/ongoing. &lt;/p&gt;
&lt;p&gt;I have begun to think of this one year ago when around me there were many of "untouched" or unmanaged as for the system environment. With such a server, when a trouble happens there is no one who could trace what is wrong or what should be done, or worse, when the box downs. It is not cool....&lt;/p&gt;
&lt;p&gt;So, to trace the anomalies I am now heading in log consolidation/management to have evidence enough for troubleshooting and detection of problems.&lt;/p&gt;
&lt;p&gt;&lt;font face="Tahoma" color="#000080"&gt;&lt;strong&gt;What I have completed&lt;/strong&gt;&lt;/font&gt;:&lt;/p&gt;
&lt;ol&gt;
&lt;li&gt;consolidating logs and alerts of network appliances, routers, (managed) switches, firewalls.&lt;br /&gt;This means I have to collect both syslog messages and SNMP traps.&lt;br /&gt;&lt;br /&gt;To do this I am using WinSyslog from Adiscon as a central location for storing syslog messages and Kiwi Syslog Daemon to collect SNMP Traps. From Kiwi SNMP traps are translated into syslog and be poured in the syslog storage.&lt;br /&gt;
&lt;/li&gt;&lt;li&gt;consolidating Event log entries from Windows Machines.&lt;br /&gt;For this I am using NTSyslog I got from SourceForge. I am still in a half way as it cannot handle multi-byte languages properly, especially around  &lt;cr&gt;&lt;lf&gt;(what do you say in English? We say this "kaigyo code" in Japanese) and Chinese characters.&lt;br /&gt;&lt;br /&gt;Another point here is the future possibilities of using of &lt;a href="http://www.logparser.com/" target="_blank"&gt;Log Parser&lt;/a&gt;, which is written by a guy in Microsoft. &lt;br /&gt;We can handle eventlog messages in multi-byte languages without a fear with the current versions of the tools released, as it handles those characters as Unicode. &lt;br /&gt;We engineers in regions with multi-byte languages welcome this tool very much as we do not have to think about "how to localize this cozy tool?", etc, etc.&lt;br /&gt;&lt;br /&gt;I am not yet planning utilizing this very kewl and cozy tool in my framework because I want to design "effortless and yet cohered" design, though. &lt;br /&gt;I emphasize here that I am planning to improve/change the whole design so there is such a high possibility that I will be using this tool. &lt;br /&gt;&lt;br /&gt;In the MVP Summit 2004 some of us Japanese MVPs had a chance to discuss on the tool with the author, in which we have heard there will be much improvements in severals of the coming versions. I promise he is so dedicated and is so enthusiastic. ;-)&lt;br /&gt;
&lt;li&gt;Choosing the base platform.&lt;br /&gt;I chose the following stuffs for this system:&lt;br /&gt;&lt;strong&gt;&lt;font color="#006400"&gt;A. Log consolidation&lt;/font&gt;&lt;br /&gt;&lt;/strong&gt;Windows 2000 Server/Server 2003&lt;br /&gt;IIS 5.0 and later&lt;br /&gt;Active Server Pages&lt;br /&gt;Microsoft SQL Server 2000&lt;br /&gt;Adiscon WinSyslog 4.2 or later&lt;br /&gt;Kiwi Syslog Daemon (to just translate SNMP Traps into syslog messages, without an effort.)&lt;br /&gt;Softether (as providing the VPN way to collect logs of servers in several segments of different locations on the Internet.)&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;font color="#006400"&gt;B. MRTG and some other system monitors&lt;/font&gt;&lt;/strong&gt;&lt;br /&gt;For this I am using several up to now, and I am planning to consolidate the monitors in just a few nodes, as I want to include links for the graphs of MRTG in the system A. above. I intentionally have several nodes, as in such a way I can troubleshoot more precisely where the bottle neck/system down occurs.&lt;/li&gt;&lt;/lf&gt;&lt;/cr&gt;&lt;/li&gt;&lt;/ol&gt;
&lt;p&gt;&lt;strong&gt;&lt;font face="Tahoma" color="#000080"&gt;What I am not yet doing&lt;/font&gt;&lt;/strong&gt;:&lt;/p&gt;
&lt;ol&gt;
&lt;li&gt;Consolidating logs scattered around the system and messages written in other forms&lt;br /&gt;As for these logs I am imagining api.log, setup.log, and so on which are written in the text format and scattered around the whole system for Windows OSes. 
&lt;/li&gt;&lt;li&gt;Consolidating Backup and Task Scheduling logs of Windows NT-Based OSes 
&lt;/li&gt;&lt;li&gt;Consolidating HFNETCHK/MBSA resultant texts. 
&lt;/li&gt;&lt;li&gt;Consolidating MRTG results 
&lt;/li&gt;&lt;li&gt;Consolidating results from tools for penetration testings like NIKTO, Syhunt, N-Stealth, Nessus, and so on. 
&lt;/li&gt;&lt;li&gt;Merging and consolidating /var/log/messages and so on in Unix platforms including FreeBSD and Linux. 
&lt;/li&gt;&lt;li&gt;Merging the logs of crond and the texts of logwatch from Unix platforms. 
&lt;/li&gt;&lt;li&gt;Consolidating results of system monitoring softwares like those released from Dell, HP, and so on. 
&lt;/li&gt;&lt;li&gt;Visualize the results to make it easier to confirm what is going on. 
&lt;/li&gt;&lt;li&gt;Issuing alerts via e-mail and web monitor pages. 
&lt;/li&gt;&lt;li&gt;The site design as a whole. (I am using IIS as a web server to show the results.) 
&lt;/li&gt;&lt;li&gt;Designing a fault-tolerant system for both SoftEther and the server.&lt;/li&gt;&lt;/ol&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=6082" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Security+tips/default.aspx">Security tips</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Tools/default.aspx">Tools</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Server+management/default.aspx">Server management</category></item><item><title>Tool: Pagedefrag de Sysinternals</title><link>http://msmvps.com/blogs/yamaken/archive/2004/02/10/tool-pagedefrag-de-sysinternals.aspx</link><pubDate>Mon, 09 Feb 2004 18:42:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:2627</guid><dc:creator>kenji</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/yamaken/rsscomments.aspx?PostID=2627</wfw:commentRss><comments>http://msmvps.com/blogs/yamaken/archive/2004/02/10/tool-pagedefrag-de-sysinternals.aspx#comments</comments><description>&lt;p&gt;Un utilitaire pour les dossiers defragment qui ne sont pas faits après bootup.&lt;br /&gt;&lt;a href="http://www.sysinternals.com/ntw2k/freeware/pagedefrag.shtml"&gt;http://www.sysinternals.com/ntw2k/freeware/pagedefrag.shtml&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=2627" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Misc/default.aspx">Misc</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Tools/default.aspx">Tools</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Windows+management/default.aspx">Windows management</category></item><item><title>Ev2T</title><link>http://msmvps.com/blogs/yamaken/archive/2004/01/29/2195.aspx</link><pubDate>Fri, 30 Jan 2004 05:45:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:2195</guid><dc:creator>kenji</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/yamaken/rsscomments.aspx?PostID=2195</wfw:commentRss><comments>http://msmvps.com/blogs/yamaken/archive/2004/01/29/2195.aspx#comments</comments><description>&lt;p&gt;It is a tool which converts event log messages to SNMP traps.&lt;br /&gt;&lt;a href="http://www.ncomtech.com/download.htm"&gt;http://www.ncomtech.com/download.htm&lt;/a&gt; &lt;/p&gt;
&lt;p&gt;As for multilbyte languages it may not be ready...&lt;br /&gt;At least sending traps to Kiwi has been terrible when I used this tool with Japanese version of Windows Server 2003.&lt;br /&gt;You may have to obtain a management app which is capable of handling multibyte messages like Japanese, Chinese, and Korean.&lt;br /&gt;Anyway there seems no probs when used with English version of NT Kernel-based OSes.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=2195" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Tools/default.aspx">Tools</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Windows+management/default.aspx">Windows management</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Server+management/default.aspx">Server management</category></item><item><title>Syslog management on Windows platforms.</title><link>http://msmvps.com/blogs/yamaken/archive/2004/01/29/2193.aspx</link><pubDate>Fri, 30 Jan 2004 05:18:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:2193</guid><dc:creator>kenji</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/yamaken/rsscomments.aspx?PostID=2193</wfw:commentRss><comments>http://msmvps.com/blogs/yamaken/archive/2004/01/29/2193.aspx#comments</comments><description>&lt;p&gt;
Do you know &lt;a href="http://www.winsyslog.com/"&gt;WinSyslog&lt;/a&gt; from &lt;a href="http://www.adiscon.com/"&gt;Adiscon&lt;/a&gt;? It is so cool a tool for us system operators/administrators.&lt;br /&gt;
Check it out at: &lt;a href="http://www.adiscon.com/"&gt;http://www.adiscon.com/&lt;/a&gt;&lt;br /&gt;
(For Japanese: &lt;a href="http://adiscon.port139.co.jp/"&gt;http://adiscon.port139.co.jp/&lt;/a&gt;)&lt;br /&gt;
This tool is so cool, as it allows you to consolidate all the standard error/log messages to one server. With MSSQL you can even display the messages via IIS 4/5. Merging Syslog, SNMP, and Windows Event logs are critical for system admins, to whom we can say this tool is the very solution for managing system health in general. &lt;br /&gt;
You can merge SNMP with syslog, using either the latest version of WinSyslog, or with Kiwi Syslog Daemon (&lt;a href="http://www.kiwisyslog.com"&gt;http://www.kiwisyslog.com&lt;/a&gt;).&lt;br /&gt;

You can merge Windows event logs with the following tools:&lt;br /&gt;
&lt;/p&gt;&lt;blockquote&gt;
&lt;p align="left"&gt;1. Event Reporter from Adiscon&lt;/p&gt;
&lt;p align="left"&gt;2. Event logs to syslog utility from Purdue University.&lt;/p&gt;
&lt;p align="left"&gt;3. ntsyslog service tool from SourceForge&lt;/p&gt;
&lt;p align="left"&gt;cf. I found a localised version of ntsyslog in Vector or Mado-no-mori, which uses EUC-JP for Japanese. If you have already deployed Linux- or *NIX-based solution for the consolidation of logs, this client is just-fit, it seems.&lt;/p&gt;&lt;/blockquote&gt;
Note: there are other tools in the world to facilitate this function. According to Kawabata-san (&lt;a href="http://www.kawabata.com/"&gt;http://www.kawabata.com/&lt;/a&gt;), you can even write up the tool that just-fits to your need. ;-)&lt;br /&gt;
&lt;p&gt;***System Requirements:&lt;/p&gt;
A. System: See the URLs above&lt;br /&gt;
B. Human:&lt;br /&gt;
&lt;blockquote dir="ltr" style="MARGIN-RIGHT: 0px"&gt;
&lt;p align="left"&gt;B-1. Knowledge of syslog (unix and network devices you use.)&lt;/p&gt;
&lt;p align="left"&gt;B-2. Ability or Experience of manually parsing eventlogs on Windows&lt;/p&gt;
&lt;p align="left"&gt;B-3. Ability to configure network devices to emit logs, if you think you'd like to add the target of monitoring.&lt;/p&gt;
&lt;p align="left"&gt;B-4. Ability to configure SNMP on servers and clients to enable them to emit SNMP messages.&lt;/p&gt;
&lt;p align="left"&gt;B-5. Ability/experience to configure server management tools like Allied Telesyn SwimView, HP OpenView or Dell Server Administrator /IT assistant for PowerEdge Systems.&lt;/p&gt;
(It is okay to use other administrative tools according to the needs at your managed networks. Tools above are just as examples.)&lt;br /&gt;&lt;/blockquote&gt;
Outputs are just like &lt;a href="http://www.geocities.jp/lg_de_sucre/cisco/softether/"&gt;this&lt;/a&gt;.(Special thanks to lg_de_sucre, a cool guy working together.)&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;Howto: Manage logs (delete unwanted/needless log messages)?&lt;br /&gt;
&lt;br /&gt;-&amp;gt; Create jobs (using T-SQL) from SQL Server Enterprise Manager.&lt;br /&gt;
&lt;br /&gt;Howto: merge the route and simplify the system?&lt;br /&gt;
&lt;br /&gt;-&amp;gt; Use SoftEther or other VPN products.&lt;br /&gt;
&lt;br /&gt;Howto: merge outputs of Snort?&lt;br /&gt;
&lt;br /&gt;-&amp;gt; Consult with docs around Snort.&lt;br /&gt;
&lt;br /&gt;&lt;a href="http://www.winsnort.com/"&gt;http://www.winsnort.com/&lt;/a&gt; or &lt;a href="http://www.snort.org/"&gt;http://www.snort.org/&lt;/a&gt; are both good-starts.&lt;br /&gt;
&lt;br /&gt;Ah, it seems I am gonna miss the last train, so see ya later!&lt;br /&gt;
&lt;br /&gt;&lt;br /&gt;
YamaKen at the office in Tokyo.&lt;br /&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=2193" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Network+Technologies/default.aspx">Network Technologies</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Tools/default.aspx">Tools</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Interoperability/default.aspx">Interoperability</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Windows+management/default.aspx">Windows management</category><category domain="http://msmvps.com/blogs/yamaken/archive/tags/Server+management/default.aspx">Server management</category></item></channel></rss>