[Dshield] RE: IIS log

Wayne Larmon wlarmon at dshield.org
Thu Aug 28 19:10:15 GMT 2003

> Thank you for the information Wayne.  Is there a concern the web
> logs like IIS would be too easy to fake?  Since it sounds like
> they contain less information than the packet logs you describe.

Our main concern is that our packet filter database always seems to expand
to fill the largest server that we have at out disposal, so we don't have
resources to support a different database.  Much as we would like to.

Wayne Larmon

More information about the list mailing list