All Projects → Blumira → Logmira

Blumira / Logmira

Licence: MIT license
Logmira by Blumira has been created by Amanda Berlin as a helpful download of Microsoft Windows Domain Group Policy Object settings.

Projects that are alternatives of or similar to Logmira

LogESP
Open Source SIEM (Security Information and Event Management system).
Stars: ✭ 162 (+252.17%)
Mutual labels:  security-audit, siem
adsys
Active Directory bridging tool suite
Stars: ✭ 80 (+73.91%)
Mutual labels:  group-policy
assimilation-official
This is the official main repository for the Assimilation project
Stars: ✭ 47 (+2.17%)
Mutual labels:  security-audit
awesome-rails-security
A curated list of security resources for a Ruby on Rails application
Stars: ✭ 36 (-21.74%)
Mutual labels:  security-audit
ad-privileged-audit
Provides various Windows Server Active Directory (AD) security-focused reports.
Stars: ✭ 42 (-8.7%)
Mutual labels:  security-audit
phan-taint-check-plugin
Github mirror of "mediawiki/tools/phan/SecurityCheckPlugin" - our actual code is hosted with Gerrit (please see https://www.mediawiki.org/wiki/Developer_access for contributing)
Stars: ✭ 21 (-54.35%)
Mutual labels:  security-audit
aura
Python source code auditing and static analysis on a large scale
Stars: ✭ 101 (+119.57%)
Mutual labels:  security-audit
skalogs-bundle
Open Source data and event driven real time Monitoring and Analytics Platform
Stars: ✭ 16 (-65.22%)
Mutual labels:  siem
detection-rules
Threat Detection & Anomaly Detection rules for popular open-source components
Stars: ✭ 34 (-26.09%)
Mutual labels:  siem
security-reviews
A community collection of security reviews of open source software components.
Stars: ✭ 67 (+45.65%)
Mutual labels:  security-audit
GDPatrol
A Lambda-powered Security Orchestration framework for AWS GuardDuty
Stars: ✭ 50 (+8.7%)
Mutual labels:  siem
ISOKIT
Windows 10 Professional - Full Strip & Lockdown Edition
Stars: ✭ 35 (-23.91%)
Mutual labels:  group-policy
vsaudit
VOIP Security Audit Framework
Stars: ✭ 104 (+126.09%)
Mutual labels:  security-audit
cli-eaa
CLI for Enterprise Application Access (EAA)
Stars: ✭ 19 (-58.7%)
Mutual labels:  siem
MailRipV3
SMTP and IMAP checker / cracker for mailpass combolists with a user-friendly GUI, automated inbox test and many more features.
Stars: ✭ 28 (-39.13%)
Mutual labels:  security-audit
siembol
An open-source, real-time Security Information & Event Management tool based on big data technologies, providing a scalable, advanced security analytics framework.
Stars: ✭ 153 (+232.61%)
Mutual labels:  siem
humble
A humble, and fast, security-oriented HTTP headers analyzer
Stars: ✭ 17 (-63.04%)
Mutual labels:  security-audit
sec-scannode
SEC分布式资产扫描系统
Stars: ✭ 8 (-82.61%)
Mutual labels:  security-audit
siemstress
Very basic CLI SIEM (Security Information and Event Management system).
Stars: ✭ 24 (-47.83%)
Mutual labels:  siem
Spydan
A web spider for shodan.io without using the Developer API.
Stars: ✭ 30 (-34.78%)
Mutual labels:  security-audit

Logmira

Logmira has been created as a helpful download of Microsoft Windows Domain Group Policy Object settings. This GPO Backup inclues our recommended windows logging settings for all supported versions of MS Windows Server. As opposed to following a list and manualy modifying 100 or so settings, it's way easier to just import it from a backup.

NOTE: Applying these settings are NOT recommended for devices with HDDs. The iop limits on spinning disks can cause issues with the delay of logs when they are a high volume.

Logmira Files

  • Logmira.zip contains the full GPO backup of only the recommended windows logging settings.
  • gporeport.xml is also included inside the zip, but gives an overview of the settings within the backup

Exporting a GPO

(what we've done to create the zip files above, and what should be done for GPO Backups)
  1. To begin the export process, open up the group policy management console, navigate to the proper domain, expand group policy objects and select the group policy object that you'd like to export.
  2. Right-click and select Back Up.
  3. Select the location the backup will be exported to, and the description. Then click Back Up.
  4. The files are then exported to the location selected, click OK.

Importing a GPO

  1. After the file on the local DC, navigate to the same place in group policy management (the proper domain and expand group policy objects).
  2. NOTE: Do not import settings on an existing GPO unless you want all settings overwritten by the import

  3. Create a NEW GPO by right-clicking on Group Policy Objects > New.
  4. Give the new GPO a name (for example: Logging Settings)
  5. Right-click on the new GPO>"Import Settings"
  6. Next > Next > Select the location where the backup was saved if it is not selected already > Next
  7. Select the "Logmira" Backed up GPO > Next > Next > Finish
You should now have a GPO created that you can link to any OU in your domain to apply the correct logging settings.
Note that the project description data, including the texts, logos, images, and/or trademarks, for each open source project belongs to its rightful owner. If you wish to add or remove any projects, please contact us at [email protected].