Supported Devices

More companies choose Intellitactics because it is flexible. Intellitactics draws information from a complete range of devices:

  • Accepts log data from virtually any source in the enterprise: security devices, network, OS, applications, and databases as well as environmental data like assets and vulnerability assessments using either push or pull protocols.
  • Even data sources like MS Windows that don’t generate syslog.

It is difficult for any analyst to be expert on the cryptic log language of every device. Intellitactics translates the cryptic language of a device or data source and makes it intelligible. Intellitactics quickly translates 70,000 disparate, cryptic event signatures and millions of raw event types – referred to as ‘logs’. Because of volume and disparity, searches of raw or even parsed log/event searches are often inappropriate for real time security management. Intellitactics links logs and events and simplifies monitoring the most complex event messages.

Intellitactics data modules provide the intelligence that determines the parsing of an event message, the normalization of the data and the disposition of the data after acquisition and parsing. Some data modules are more in depth than others and this is a function of data sources themselves and the frequency with which they are seen in the market. In the following list the data modules with bright blue highlighting are the most detailed and continue through the entire range to data modules for data sources rarely seen, but supported, with the lightest blue highlighting.

Intellitactics data modules are managed centrally and in most cases no agents are required. This ensures high performance and low maintenance costs when deploying and maintaining your security environment over time.

The following list of supported data sources is updated weekly and customers access new data modules and their updates from the Customer Center. The list below is highlighted by three colors. The data modules with the deepest blue shading offer the most in depth coverage.

Category Vendor Product
Authentication, Authorization, Account Cisco Systems, Inc. CiscoSecure ACS for Unix 2.3
Authentication, Authorization, Account Cisco Systems, Inc. CiscoSecure ACS for Windows
Authentication, Authorization, Account FreeRADIUS FreeRadius via flatfile
Authentication, Authorization, Account RSA Security, Inc. RSA ACE Server/SecurID 5.1.173
Authentication, Authorization, Account RSA Security, Inc. RSA SecurID 10
Authentication, Authorization, Account Applied Identity Applied Identity ID Enforce
Authentication, Authorization, Account Computer Associates CA eTrust Access Control 5.2
Authentication, Authorization, Account Computer Associates CA eTrust Top Secret Security 5.2
Authentication, Authorization, Account FreeRADIUS Radius Server
Authentication, Authorization, Account IBM Corporation IBM Tivoli Access Manager 5.1
Authentication, Authorization, Account Juniper Networks, Inc. Steel-Belted Radius
Authentication, Authorization, Account Kerberos MIT Kerberos Protocol
Authentication, Authorization, Account Cisco Systems, Inc. Cisco - TACACS
Authentication, Authorization, Account Computer Associates CA eTrust Single Sign-On
Authentication, Authorization, Account Computer Associates CA eTrust Siteminder 6
Authentication, Authorization, Account IBM Corporation IBM TDS via Flatflie
Authentication, Authorization, Account Mirage Mirage Network Access Control
Authentication, Authorization, Account Network Associates McAfee Network Access Control 2.5
Authentication, Authorization, Account Vesoft Security 3000
Antivirus Mcafee, Inc. Mcafee ePO 3.6
Antivirus Mcafee, Inc. Mcafee ePO 4.0
Antivirus Symantec Corporation Symantec Anti-Virus 10.1
Antivirus Trend Micro, Inc. TrendMicro InterScan MSS 5.5
Antivirus Trend Micro, Inc. Trendmicro OfficeScan 5.5
Antivirus Computer Associates CA eTrust AntiVirus 7.0.139
Antivirus Symantec Corporation Symantec Client Security 3.0
Antivirus Trend Micro, Inc. TrendMicro Control Manager 3.0
Antivirus Network Associates Mcafee WebSheild SMTP 4.5
Antivirus Sophos, Plc Sophos AV
Antivirus Symantec Corporation Symantec Endpoint Protection Manager
Application Cisco Systems, Inc. Cisco Unified Call Manager 4.1
Application Intellitactics Intellitactics ISM Logs
Application Java Java Enterprise Security
Application Quest Software Quest InTrust
Application Symantec Backup Exec 12.5
Application Alcatel Alcatel 5620 NM
Application Symantec Corporation Altiris Notification Server 6.0
Application Areva Areva Power System Audit
Application Avocent Avocent DSView3
Application BEA BEA WebLogic Server 9.0
Application Dameware Dameware Remote Control via SMTP
Application IBM Corporation IBM IMtegrity Sametime plugin 3.31
Application Inovis Inovis TrustedLink Enterprise 6.x
Application NetApp Appliance Inc. NetApp Filer for Unix
Application NetApp Appliance Inc. NetApp Storage
Application Netwitness NetWitness Informer
Application PeopleSoft HRMS
Application SAP SAP AIS
Application VMware VMware ESX
Database Microsoft Corporation Microsoft SQL Server
Database MySQL MySQL Commercial 5.0.38
Database Oracle Oracle8i/9i/10g Audit Trail
Database Sybase Sybase ASE 12.5.2 Audit
Database Tizor Tizor Mantra 5.1
Database IBM Corporation IBM DB2
Database NCR Teradata
Database Oracle Oracle Listener Log
Database RippleTech RippleTech Informant DB Auditor
DHCP Microsoft Corporation WinDHCP
Directory Services Sun Microsystems Sun Directory Server 5.2
DNS F5 Networks, Inc. F5 3DNS via syslog
DNS Infoblox Infoblox NS1 with Grid Package
DNS Internet Software Consortium ISC Bind 9.2
Email Anidirect Ironport C60
Email Postfix Postfix 2.5
Email QMail Qmail 1.03
Email Sendmail Sendmail 8.1
Encryption PGP PGP Desktop via Syslog
Firewall Check Point Software Technologies Ltd. FW-1
Firewall Check Point Software Technologies Ltd. VPN-1
Firewall Cisco Systems, Inc. VPN Concentrator
Firewall Cisco Systems, Inc. Cisco ASA/PIX/FWSM
Firewall CyberGuard Corporation Cyberguard
Firewall Open Source BSD IP Filter 4.1.1
Firewall Juniper Networks, Inc. SSL VPN
Firewall Juniper Networks, Inc. Netscreen
Firewall Secure Computing Corporation Sidewinder G2
Firewall SonicWall SonicWall Enhanced SonicOS
Firewall Symantec Corporation Symantec Raptor FW 7
Firewall Fortinet Inc. Fortinet Fortigate Antivirus Firewall
Firewall Lucent Lucent Brick via LSMS
Firewall Microsoft Corporation Microsoft RAS
Firewall Nokia IPSO
Firewall Nortel Nortel VPN Contivity
Firewall Open Source IP Tables
Firewall Palo Alto Palo Alto Application Firewall
Firewall Secure Computing Corporation Gauntlet
Firewall Shiva Shiva VPN via Syslog
Firewall SonicWall Aventail SSL VPN
Firewall Symantec Corporation Symantec Gateway Security 3.0.1
Firewall Watchguard WatchGuard Firebox III Firewall/VPN
Firewall Arkoon Arkoon Firewall
Firewall Caymas Caymas VPN
Firewall F5 Networks, Inc. F5 Firepass
Firewall iPolicy Networks iPolicy
Firewall LinkTrust LinkTrust Cyberwall Firewall
Firewall Netasq Netasq Firewall
Firewall netfilter IPTables IPv6
Firewall Stonesoft Stonesoft Stonegate
Firewall Sygate Inc. Sygate Enterprise Mgr
Firewall Watchguard Rapidstream
Host Intrusion Cisco Systems, Inc. Cisco Security Agent
Host Intrusion Enterasys Networks, Inc. Enterasys Dragon System Sensor
Host Intrusion IBM Internet Security Systems ISS Server Sensor
Host Intrusion Symantec Corporation Intruder Alert
Host Intrusion AIDE Project AIDE via Flatfile
Host Intrusion Ciphertrust CipherTrust IronMail
Host Intrusion Prevention Network Associates McAfee Host Intrusion Prevention
Host Intrusion Symantec Symantec Endpoint Protection Manager
Host Intrusion Third Brigade Third Brigade Deep Security
Host Intrusion Tripwire, Inc. Tripwire Manager
Host Intrusion Tripwire, Inc. Tripwire for Network Devices
Host Intrusion Tripwire, Inc. Tripwire for Servers
Host Intrusion Samhain Labs Samhain
Host Intrusion SecureWave SecureWave Sanctuary
Intrusion Prevention IBM Internet Security Systems IBM ISS Proventia
Intrusion Prevention Cisco Systems, Inc. Cisco IPS
Intrusion Prevention Juniper Networks, Inc. Netscreen IDP
Intrusion Prevention Radware Radware DefensePro
Intrusion Prevention Symantec Corporation Symantec Critical System Protection
Intrusion Prevention Symantec Corporation Symantec Network Security
Intrusion Prevention Tipping Point TippingPoint IPS UnityOne
Intrusion Prevention Forescout ForeScout ActiveScout
Intrusion Prevention Forescout ForeScout CounterACT
Intrusion Prevention Third Brigade Deep Security
Intrusion Prevention TopLayer Top Layer IPS
Intrusion Prevention Web Info Pro Services WebIPS
Intrusion Prevention iPolicy Networks iPolicy Intrusion Prevention Firewall
Intrusion Prevention Check Point Software Technologies Ltd. IPS-1
Intrusion Prevention Venus Venus Cybervision
Intrusion Prevention Fortinet Inc. Fortinet Fortiguard
Load Balance F5 Networks, Inc. F5 BIG-IP
Load Balance Cisco Systems, Inc. Cisco Global Site Selector
Network Intrusion AirDefense Airdefense Enterprise
Network Intrusion Arbor Networks Arbor Networks Peakflow X
Network Intrusion Enterasys Networks, Inc. Enterasys Dragon
Network Intrusion IBM Internet Security Systems ISS Realsecure Site Protector
Network Intrusion IBM Internet Security Systems ISS Workgroup Manager
Network Intrusion IBM Internet Security Systems ISS Network Sensor
Network Intrusion Intrusion Inc. Intrusion Data Leak Provention
Network Intrusion Intrusion Inc. Intrusion Secure Net Pro
Network Intrusion Lancope Stealthwatch
Network Intrusion Mazu Networks Mazu
Network Intrusion Network Associates Mcafee Intrushield
Network Intrusion Reflex Security Reflex Switch/IDS
Network Intrusion Securify Securify SecurVantage
Network Intrusion Snort.org Snort
Network Intrusion Sourcefire, Inc. Sourcefire Network Sensor
Network Intrusion Arbor Networks Arbor Networks Peakflow DoS
Network Intrusion Arbor Networks Arbor Networks Peakflow SP
Network Intrusion Check Point Software Technologies Ltd. SmartDefense
Network Intrusion Cisco Systems, Inc. Cisco IDS
Network Intrusion Covelight Systems Covelight Percept 2.1
Network Intrusion Intelli7 Intelli7 IDS
Network Intrusion Radware Radware Inflight
Network Intrusion Symantec Corporation Symantec Manhunt
Network Manager of Managers Quest Software Quest Big Brother 1.9e
Network Manager of Managers Airwave Airwave Management Platform
Operating System Logs Adiscon Event Reporter
Operating System Logs IBM Corporation IBM AIX Audit
Operating System Logs Doriansoft Dorian Event Archiver
Operating System Logs Microsoft Corporation Windows Security Event Logs via Microsoft MOM
Operating System Logs Microsoft Corporation Microsoft Event Logs via LogParser
Operating System Logs NetIQ Security Manager
Operating System Logs IntersectAlliance Snare Agent for Windows Security Event Logs 2000, XP, 2003, 2008
Operating System Logs Microsoft Corporation Windows Security Event Logs 2000, XP, 2003, 2003 Advanced Server, 2008
Operating System Logs GNU Generic Unix Syslog
Operating System Logs Hewlett-Packard Development Company, L.P. HP-UX 11.0 Audit
Operating System Logs IBM Corporation RACF
Operating System Logs Redhat RedHat Audit Tools
Operating System Logs Microsoft Corporation Windows Security Event Logs via Loglogic
Operating System Logs Sun Microsystems Sun Solaris Base Security Module
Operating System Logs Sun Microsystems Sun JES Directory Manager
Operating System Logs CHT CHT ITA OS Logs
Operating System Logs Nokia Nokia IPSO
Operating System Logs Sanchez Profile
Operating System Logs Sib Sib Sit++
Operating System Logs Stratus VOS (Virtual Operating System)
Operating System Logs Hewlett-Packard Development Company, L.P. Integrated Lights Out Management (ILOM)
Operating System Logs Sun Microsystems Solaris ILOM via Syslog
Packet Collection Network Associates Sniffer
Packet Collection Qosient Argus
Packet Collection Quest Software Big Brother
Packet Collection Ethereal Ethereal
Packet Collection NMAP NMAP
Packet Collection Open Source Thold plugin for Cacti RRDTool
Packet Collection BlueCoat Systems Packeteer Packetshaper
Printer Hewlett-Packard Development Company, L.P. HP Print Server
Proxy Server BlueCoat BlueCoat Proxy SG
Proxy Server Microsoft Corporation ISA Web Proxy
Proxy Server University of California San Diego Squid
Proxy Server Marshal WebMarshal
Proxy Server IBM Corporation Websphere Datapower Proxy
Proxy Server Network Appliance, Inc. NetApp Netcache
Proxy Server Sun Microsystems Sun ONE Web Proxy
Proxy Server Sun Microsystems Sun ONE Directory Proxy Server
Proxy Server SurfControl SurfControl Web Filter
Proxy Server Websense Websense Enterprise
Proxy Server Barracuda Barracuda Web Filter
Quality of Service Sandvine Sandvine via Syslog
Router/Switch Cisco Systems, Inc. Cisco IOS
Router/Switch Enterasys Networks, Inc. Enterasys X-Pedition Series ER-16
Router/Switch Cisco Systems, Inc. Cisco Catalyst 4000
Router/Switch Enterasys Networks, Inc. Enterasys N Series Switch
Router/Switch Juniper Networks JunOS
Router/Switch Foundry Foundry Switches
Router/Switch Ariss Arris C4 CMTS
Router/Switch Cisco Systems, Inc. Cisco Aironet 350 Series Access Point
Router/Switch Cisco Systems, Inc. Cisco CSS
Router/Switch Cisco Systems, Inc. Cisco Wireless Lan Controller 4400
Router/Switch Alcatel Alcatel 7450 Ethernet Service Switch
Router/Switch Cisco Systems, Inc. Cisco MDS 9000
Router/Switch Aruba Aruba 5000 Wireless Switch
Router/Switch Brocade Brocade Switch via Syslog
Router/Switch Cisco Systems, Inc. Cisco UBR
Router/Switch Fortinet Inc. Fortinet AP100 via Syslog
Router/Switch Motorola Motorola BSR CMTS
Router/Switch Symbol Symbol AP-4131
Security Monitor of Monitors Cisco Systems, Inc. Cisco MARS
Security Monitor of Monitors NetIQ Window Event Logs via NetIQ Security Manager
Vulnerability IBM Internet Security Systems, Inc. Internet Scanner
Vulnerability Mcafee, Inc. McAfee Vulnerability Management Service
Vulnerability Sourcefire, Inc. Sourcefire RNA 500
Vulnerability Tenable Network Security Nessus
Vulnerability Symantec Corporation Altiris Security Expressions
Vulnerability Eeye Digital Security eEye Retina Network Security Scanner
Vulnerability Lumeta Lumeta IP Sonar
Vulnerability Microsoft Corporation Microsoft Baseline Security Analyzer
Vulnerability nCircle nCircle ip360
Vulnerability Lumension PatchLink Update
Vulnerability Shavlik Shavlik NetChk Protect
Vulnerability Qualys Qualys Guard
Vulnerability GFi Languard NSS
Vulnerability BMC BMC Configuration Management (Formerly Marimba)
Web Cisco Systems, Inc. Cisco Content Engine
Web Microsoft Corporation Internet Information System
Web IntersectAlliance Snare for IIS WebServers
Web 8e6 Technologies 8e6 R3000 Web Filter
Web Apache Foundation Apache
Web Open Source Filezilla FTP Server
Web Sun Microsystems Sun ONE Web Server
Web SurfControl SurfControl Webfilter
Web ISC Bind