09 June 2010

Application Log Management and Analysis

Security and audit logging should be defined, implemented and tested for every web application. But what about log management and analysis?

Close-up photograph of machinery controls at the London Transport Museum, Covent Garden showing a lever and three dials labelled 'Standby', 'Telephone' and 'Shutdown'

This week Raffael Marty posted an updated item to his blog about a Maturity Scale for Log Management and Analysis. It is an excellent review.

Whilst much of this management and analysis is intended to be external to an application, we need to remember each application needs to record adequate information to feed into these analysis and reporting tools. And why do that? Read the bullet points under return on investment (ROI) at the end of the article. What else? Well perhaps also:

  • feedback into the development lifecycle (to improve subsequent patches, versions and other projects)
  • greater trust by users
  • brand protection
  • protection of information assets (not just preventing leaks, but ensuring accuracy and integrity).

Therefore, build adequate logging in from the start. Web server logs are not enough!

Posted on: 09 June 2010 at 16:47 hrs

Comments Comments (0) | Permalink | Send Send | Post to Twitter

Comments

Comments are filtered automatically and should appear shortly after they been checked.

Post a comment
Confirm acceptance and understanding of the terms of use
New posts to this thread will be sent to your email address
Application Log Management and Analysis
http://www.clerkendweller.com/2010/6/9/Application-Log-Management-and-Analysis
ISO/IEC 18004:2006 QR code for http://clerkendweller.com

Page http://www.clerkendweller.com/2010/6/9/Application-Log-Management-and-Analysis
Requested by 38.107.179.222 on Tuesday, 7 February 2012 at 21:32 hrs (London date/time)

Please read our terms of use and obtain professional advice before undertaking any actions based on the opinions, suggestions and generic guidance presented here. Your organisation's situation will be unique and all practices and controls need to be assessed with consideration of your own business context.

Terms of use http://www.clerkendweller.com/page/terms
Privacy statement http://www.clerkendweller.com/page/privacy
© 2010-2012 clerkendweller.com