Subscribe to our e-mail newsletters
For more info on a specific newsletter, click the title. Details will be displayed in a new window.
Data Management
Storage
Computerworld Daily News (First Look and Wrap-Up)
Computerworld Blogs Newsletter
The Weekly Top 10
More E-Mail Newsletters 
Computerworld 2007Subscribe to Computerworld
40 years of the most authoritative source of news and information for IT leaders.

Logging and archiving: Where storage and security needs intersect

Diana Kelley, Computer Associates   Today’s Top Stories    or  Other Storage Stories  
 

Sign up to receive Security Resource Alerts

June 17, 2004 (Computerworld) -- When IT managers consider logging and archiving, they are faced with a dilemma: Keep enough data, and audit and regulatory needs are met, business continuity is maintained, and recovery after disaster goes off smoothly.
Keep too much data, though, and the cost associated with storing that data and the resources needed to maintain the archives could skyrocket, outweighing many of the benefits.
What's needed is a careful, business-based balance between security and storage. Simple storage of the data isn't enough. How data is stored and how the associated threats to it are mitigated are critical parts of the puzzle. Even the most sophisticated storage-area network (SAN) isn't much use if an attacker can access the logs and delete or otherwise tamper with them. In this article, we'll take a look at some of the questions that companies should ask to understand how to store and archive logs reliably.
Do you need it on demand?
Stored log data may differ in its overall value to the organization. For example, log files from a development server that contains old builds of phased-out code may have a different weight than the logs from the corporate human resources, enterprise resource planning and mail servers. Because the cost of data storage varies depending on the ways in which it will be used and accessed, old copies of log files from testing and prototype machines may lend themselves to less expensive storage methods, such as off-line digital archive tapes, while ERP system logs may need to be available around the clock via the corporate SAN.
Assign a value weight to each set of logs that will be archived and then determine the most cost-effective storage method. If the data can't be accessed when it's needed, it's not of much use. Archived data that has been stored in a third-party, off-site facility, where it may take days or weeks to retrieve, could cause a breach of a service-level agreement or be in potential violation of audit policies.
One of the most important contributors to data availability is management of the SAN and all of the archives. If more storage space is needed, can it be discovered, provisioned and made available automatically? If not, what are the consequences? Is data lost? Does someone gets paged at 3 a.m. on a Sunday to go into the data center and provision additional storage? Are there metrics to provide alerts for anomalous storage usage and for strategic planning of storage needs?
How safe does it need to be?
With a valuation in place, the acceptable risk level of the stored data can be assessed. First, you must understand the types of threats to the data, the ease with which they can be executed and the cost of potential damage.
Next, perform an analysis that defines the types of threats and the effect, ease, frequency and probability of exploitation. Where there are more users physically near the data or with access to it, if the right controls aren't in place, exploiting a vulnerability can be very easy and can be repeated frequently.

Continued...
1 | 2 | NEXT  



Print this Story Send Us Feedback E-mail this Story Digg! Digg this Story Slashdot this Story
"Both Google and Apple appear to be rolling out new solid state disks in two different environments: the data center..." Read more...
"It's IT Blogwatch: in which Sun finally releases OpenSolaris, but with a surprising, cloud-computing twist, courtesy of Amazon EC2. Not..." Read more...
Read more Storage posts or See all Blogs
FAQ: Windows XP SP3 reboot hell (and how to get out of it)
HP-EDS deal spurs range of customer reactions
WiMax vs. Long Term Evolution: Let the battle begin
More top stories...
Microsoft fixes critical Windows, Word flaws
Developers target XP over Vista by wide margin
Restaurant chain served up payment card data to hackers
A role on an IT help desk is what you make of it, tech pros say — just don't get too comfy.
Web-based e-mail may be exposing you to privacy and security dangers you didn't sign up for.
Ever been tempted to replace the mechanical hard drive in your laptop with a shiny new solid-state disk? Our expert did so, and here's what he found.
PARC showed erasable paper and other technologies that adds intelligence to documents with raw text.
Reviews, analyses, how-tos, visual tours, hot issues and predictions about Microsoft's new OS.
Four years from now, the IT field will be a vastly different place. Will you be ready?
All Zones
Application Performance Zone
Enterprise-Class Security Zone
Enterprise Solutions Zone
The File Data Management Zone
Grid Computing on Windows Zone
Security Management Zone
ITIL Best Practices Zone
The SAS Zone
Storage Virtualization Zone
The Data Center Management Zone

Ads by TechWords

See your link here
Critical Considerations for Data De-duplication
Critical Considerations for Data De-duplication
Register for this live webcast, airing May 22nd at 2pm ET!
Go to the webcast 
Computerworld Technology Briefing: Automation + Virtualization = Datacenter Optimization
Download this Technology Briefing now!
(Source: CA) Apart from its merits, virtualization can introduce new levels of complexity into the datacenter. The complexity can impede the freeing up of valuable human resources to work on more strategic projects. What are needed are tools and solutions to help IT optimize resources while ensuring performance, availability, and business continuity.
Download this executive briefing download
The Missing Piece of Virtualization
Get this white paper now!
(Source: Neterion) Server virtualization saves money and increases flexibility.  But it faces some real limits.  Currently, I/O-intensive applications like databases or ERP systems are often excluded from virtualization, due to bottlenecks that are introduced by extra layers of software.

I/O virtualization changes the game.  With new industry-standard technologies and 10 Gigabit Ethernet, hardware-based IOV eliminates these bottlenecks, enabling higher numbers of VMs and applications per virtualized system. To uncover new cost saving opportunities, read this new whitepaper and find the missing piece of virtualization.
Download this white paper go
White Papers
Read up on the latest ideas and technologies from companies that sell hardware, software and services.
New Fujitsu High-End Itanium Windows- and Linux-Based PRIMEQUEST Servers Offer the Utmost in High Availability
New Fujitsu High-End Itanium-Based PRIMEQUEST Servers Offer Industry-Leading System Management for Linux and Windows
Symantec State of the Data Center Report 2007
View more whitepapers