Raz-Lee Security Extends SIEM Support to LEEF, CEF & Multiple Concurrent SIEMs

Compliance / Privacy
Typography
  • Smaller Small Medium Big Bigger
  • Default Helvetica Segoe Georgia Times

Raz-Lee Security Inc., a major vendor of security, auditing and compliance software solutions for IBM i systems, announces the availability of extended Syslog for SIEM support.

 

Following are some of the highlights of the extended support:

  • Field-mode formats for IBM QRadar (LEEF) and HP ArcSight (CEF) are supported; each event value is stored in a separate field together with its appropriate descriptive name. Previous support for LEEF/CEF and other standards, with messages that integrate field values within a descriptive message, were preserved. It should be noted that Raz-Lee is certified by IBM as “Ready for Security Intelligence” and partnered with Q1Labs prior to their acquisition by IBM.
  • As more and more companies worldwide are using multiple SIEM solutions, RazLee now supports up to 3 SIEM products/servers simultaneously. For example, iSecurity can send network and system related alerts to one SIEM product/server and application-related alerts to a second SIEM server. In addition, we support Imperva SecureSphere DAM and McAfee DAM and ESM (SIEM) products.
  • Each of the supported SIEM products/servers is defined by its own unique destination IP, Port, CCSID, message filtering, etc.
  • LEEF/CEF field mode support sends only meaningful fields. For example, since Move and Rename objects have the same Audit Type but different subtypes, the fields sent will be those relevant to the activity to the object.
  • UDP, TCP and encrypted TLS protocols are all supported.
  • Advanced communications recovery features have been implemented where feasible, in the event of network problems or SIEM unavailability.

 

The extended Syslog support capabilities and features are a direct result of increasing customer demand for integrating IBM i (AS/400) security-related event alerts with SIEM solutions.  

 

"Raz-Lee is excited to be able to offer the market advanced Syslog capabilities which supplement our existing partnerships, such as our DB/400 Agent for Imperva SecureSphere and our McAfee-certified DAM (database activity monitoring) and ESM (SIEM) solutions” said Shmuel Zailer, CEO at Raz-Lee Security. "The proven integration of all iSecurity solutions with products from IBM, HP, Splunk, Juniper, RSA, GFI, NTT, CA and others once again establishes Raz-Lee’s position at the leading edge of IBM i technology.”

Raz-Lee Security, with headquarters in Nanuet, New York, is a leading security solution provider for IBM's Power i (AS/400) computers. Drawing upon its 26 years of expertise in the Power i performance and optimization market, the company designs, develops, and markets a comprehensive suite of advanced security software solutions—iSecurity.

Raz-Lee's iSecurity product suite is field-proven and features three product sets: the Prevention pack, a complete security solution covering network access, user/password management, anti-virus protection, detection of harmful events, protection of workstations and more; the Compliance pack, which comprises auditing and compliance solutions, providing automatic reporting security related information; and the Application Security suite, which provides information on all changes in business-critical data using real-time alerts and timeline reports.

BLOG COMMENTS POWERED BY DISQUS

LATEST COMMENTS

Support MC Press Online

$

Book Reviews

Resource Center

  •  

  • LANSA Business users want new applications now. Market and regulatory pressures require faster application updates and delivery into production. Your IBM i developers may be approaching retirement, and you see no sure way to fill their positions with experienced developers. In addition, you may be caught between maintaining your existing applications and the uncertainty of moving to something new.

  • The MC Resource Centers bring you the widest selection of white papers, trial software, and on-demand webcasts for you to choose from. >> Review the list of White Papers, Trial Software or On-Demand Webcast at the MC Press Resource Center. >> Add the items to yru Cart and complet he checkout process and submit

  • SB Profound WC 5536Join us for this hour-long webcast that will explore:

  • Fortra IT managers hoping to find new IBM i talent are discovering that the pool of experienced RPG programmers and operators or administrators with intimate knowledge of the operating system and the applications that run on it is small. This begs the question: How will you manage the platform that supports such a big part of your business? This guide offers strategies and software suggestions to help you plan IT staffing and resources and smooth the transition after your AS/400 talent retires. Read on to learn: