Nov 3, 2018

    Microsoft Forefront Threat Management Gateway Logs(Huge Traffic)


      Microsoft forefront threat management gateway has generated huge logs after integration with solar winds LEM.I have heard that LEM(SIEM) is not a solution to monitor proxy logs.I have been guided to implement a proper web proxy solution and monitor those logs on a newly deployed solution or monitor your logs through Microsoft SQL server management studio.


      Please share you opinions!LEM is not a solution to monitor proxy traffic(huge traffic) or to apply rules/filters to monitor web proxy traffic.