The log analysis software Seci-log 1.13 was released, simplifying the installation and making adjustments to the underlying structure of the program. The previous article 1.12, interested to understand. This upgrade incorporates both Linux and Windows versions. All two versions are green (you need to install Java 1.7 in advance ) and can be placed in any directory, if the formal use is recommended on disk with large disk space.
This upgrade simplifies the installation, relying only on Java 1.7, log data only stored in ES, remove the MySQL database, so that there is no need to install MySQL, at the same time get another advantage data occupy less than half of the space, because the same record, MySQL storage space is larger than ES storage space. at the same time to improve the home page and log query queries such as log query efficiency, when the MySQL database to tens other times need to specifically optimize the database, otherwise the query will be relatively slow The simplifies the configuration, the program can be downloaded to use, without any configuration and can be used.
For window, if you need to scan the asset with NMAP, you need to install Nmpa to the relative path Secilog\tools\nmap.
Optimized log query:
Added a new feature, can be in the log search to understand the Cascade query, that is, the original query results based on the direct click on the list of source IP, you can append the source IP, in the results click on the target IP, you can append to the source IP. This makes it easier to correlate queries.
The switch configuration is increased:
This makes it possible to confirm the relationship between the switches so that the device is better maintained. At the same time, the H3C and Huawei switches do Mac port analysis, this part needs a separate program to complete, if necessary can contact the company.
Welcome everyone to download and use!
Seci-log 1.13 Release simplifies installation and program The underlying structure has been adjusted