In Splunk, it is possible to detect tampering of logs. Splunk will take an
event at ingestion time and create a hash value based on the event and your
certificates/keys. You can then write searches that will re-hash the event
to be compared to the original to indicate if anything has changed. We
need something like that.
In Splunk, it is possible to detect tampering of logs. Splunk will take
an event at ingestion time and create a hash value based on the event and
your certificates/keys. You can then write searches that will re-hash the
event to be compared to the original to indicate if anything has changed.
We need something like that.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.