|
Enterprise security management (ESM) vendor ArcSight has launched an open log management suite called the Common Event Format. The CEF seeks to improve the interoperability of different security and network devices and applications. ArcSight claims that its experience across more than 30 different security and network technology categories. CEF enables technology companies and customers to use a common event log format so that data can be easily collected and aggregated for analysis by an enterprise security management system.
"With CEF and the ArcSight CEF connector, we can add new devices and applications to our security event monitoring infrastructure without building proprietary ArcSight connectors. This will save us time and integration headaches," said John Summers, global director of managed security services at Unisys, a large ArcSight customer.
WELF and IDMEF are existing standards. ArcSight claims the new framework is superior in that they are tied to specific transfer protocol or appliations.
The Common Event Format is an open format that is now publicly available. To assist technology companies that want to adopt, test and certify their compatibility with the CEF standard, ArcSight has formed a Common Event Format certification program. ArcSight will provide documentation, access to a hosted ArcSight ESM solution for testing and Web support as part of the CEF certification process. AirTight Networks, CipherOptics, DeepNines, Intrusic, Reconnex, Vericept and Vontu are among ArcSight technology partners who are leveraging the CEF standard today and are going through the certification program.
|