Skip to main content

Using ISA Server Logs to Interpret Network Traffic

Firewalls are necessary for a defense-in-depth strategy. Microsoft entered the firewall market with Internet Security and Acceleration Server (ISA Server). ISA Server was a follow-on release of Microsoft Proxy Server and part of the .Net Family. As with most Microsoft products, logging capabilities are included. ISA Server contains detailed security and access logs. This paper focuses on ISA logs and how you can use them to interpret the types of traffic passed through the network.

814 (PDF, 3.78MB)

3 May 2002
ByBrian McKee
Share
All papers are copyrighted

No re-posting of papers is permitted

Subscribe to GIAC’s Monthly Newsletter

Receive expert insights, priority access to certifications, essential updates on regulatory changes and industry developments.