Gemini Data

Gemini Data

Proxy log analysis first set

Proxy log analysis The first set is a solution product that combines the machine data analysis platform “Splunk Enterprise”, the Splunk App “Macnica Proxy Log Analysis App”, and the Splunk dedicated server “Gemini Appliance”.

Taking advantage of the high-speed and real-time log search features of Splunk Enterprise, it enables timely and prompt fault investigation. In addition, we provide useful report screens as templates from the perspective of network administrators and security administrators, so you can immediately start analyzing proxy logs without any prior settings or knowledge.

What is Macnica Proxy Log Analysis App?
Proxy Log Analysis First Set What is Startup Service?

Information aggregation point for external web communication = proxy!

Since firewalls record client-side and server-side communication logs separately, it may not be possible to respond quickly when an incident occurs.

On the other hand, by linking proxy logs with AD, it is possible to acquire communication logs in a form that links not only IP addresses but also user information.

  • Information aggregation point for external web communication = proxy!

Access logs are a treasure trove of information!

Symantec ProxySG communication log
Proxies record a lot of information about web traffic. With Symantec ProxySG, you can flexibly customize the output communication log items, so you can add output information depending on the log linkage destination.
for example…

  • Source port number when sent from proxy
  • Destination IP address when sent from proxy
  • X-Forwarded-For header value assigned downstream, etc...

Challenges of access log analysis

  • Challenges of access log analysis
Challenges of access log analysis

A large amount of access logs obtained by proxies can be aggregated into Splunk and used for reporting and analysis.

  • プロキシで取得した大量のアクセスログをSplunkに集約

Inquiry/Document request

Macnica Gemini Co., Ltd. Product Manager

Mon-Fri 8:45-17:30