<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.appian.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Using System Logs to Identify Security Risks</title><link>https://community.appian.com/discussions/f/data/39364/using-system-logs-to-identify-security-risks</link><description>I am currently streaming logs onto a syslog server and would like to come up with a series of programmed alerts to identify potential security risks. But it&amp;#39;s not always clear how to use the log fields to come up with these alerts. Has anyone done this</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: Using System Logs to Identify Security Risks</title><link>https://community.appian.com/thread/149399?ContentTypeID=1</link><pubDate>Sun, 29 Jun 2025 17:42:09 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:f47061e1-def6-4eec-b36e-e7ebf27ac459</guid><dc:creator>Stefan Helzle</dc:creator><description>&lt;p&gt;The problem here is like you wrote in your second paragraph:&lt;/p&gt;
&lt;p&gt;&amp;quot;it&amp;#39;s unclear how to distinguish a legitimate denial from a potential security threat&amp;quot;&lt;/p&gt;
&lt;p&gt;You will have to first, specify what you are looking for, and then find data supporting it. And yes, log files are mostly not easy to understand, and you will have to spend some time on decoding the data, what it means, and for what purpose you can use it.&lt;/p&gt;
&lt;p&gt;As I never tried something like this, I hope others have better ideas.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Using System Logs to Identify Security Risks</title><link>https://community.appian.com/thread/149398?ContentTypeID=1</link><pubDate>Sun, 29 Jun 2025 11:22:39 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:fd037d40-85db-4b0c-ae65-daaa03b294fa</guid><dc:creator>alexs8437</dc:creator><description>&lt;p&gt;do you have any specific contacts you&amp;#39;d suggest? I opened a support ticket, and they basically said they couldn&amp;#39;t do anything beyond referring me to the public documentation. In fact, they suggested I check this forum and open a thread.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Using System Logs to Identify Security Risks</title><link>https://community.appian.com/thread/149393?ContentTypeID=1</link><pubDate>Sat, 28 Jun 2025 10:27:46 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:43864264-e41a-415f-8381-0e6a54b871d1</guid><dc:creator>Stefan Helzle</dc:creator><description>[quote userid="248627" url="~/discussions/f/data/39364/using-system-logs-to-identify-security-risks"]identify potential security risks[/quote]
&lt;p&gt;Yeah, this is difficult. I suggest to contact Appian to discuss this matter in detail.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>