Computer auditing involves the manual collection and review of independent log files that may be completely different in format and contents, yet they may be conceptually related as they could be part of the picture for an incident. The aim of this paper is to investigate the feasibility of heterogeneous log integration via the use of Log Management Information Bases, i.e. metadata descriptions of each proprietary log that would allow for log ‘unification’ in a standardised language such as XML, and their subsequent correlation into a software module that could be either an independent application or an add-on module of generalised audit software.
IOS Press, Inc.
6751 Tepper Drive
Clifton, VA 20124
Tel.: +1 703 830 6300
Fax: +1 703 830 2300 email@example.com
(Corporate matters and books only) IOS Press c/o Accucoms US, Inc.
For North America Sales and Customer Service
West Point Commons
Lansdale PA 19446
Tel.: +1 866 855 8967
Fax: +1 215 660 5042 firstname.lastname@example.org