Home Vision & Mission Solutions Knowledge Base Contact Us
Remote Syslog Management & Analysis

Itheon Log Analyzer

Centralized Syslog Collection, Search & Analysis

Itheon Log Analyzer is a centralized syslog collection, search and analysis platform. It manages remote hosts' log forwarding, ingests the stream in real time, and indexes every event for fast search — giving IT and security teams a single console for live log viewing, reporting, alerting and security investigation.

From one dashboard, teams can search millions of indexed events in seconds, build saved investigation streams the whole team shares, trace suspicious IP addresses, and get notified the moment a threshold is breached.

Real-time log ingestion
Full-text log search
Rule-based saved streams
Threshold-based alerting
Audit & security forensics
IP threat intelligence
Active Directory analytics
Role-based access control
Request Demo Download Brochure Demo running v1.0.0
Itheon Log Analyzer dashboard showing event volume, top devices, and top applications
Itheon Log Analyzer alert definitions
Itheon Log Analyzer IP intelligence reputation and geolocation view
Release Timeline
v1.0.0 Current
More releases coming soon

The first release of Itheon Log Analyzer ships as a complete platform: live log search, dashboards, saved streams, threshold alerting, reports, audit & security, AD analytics, and IP intelligence.

Capabilities

Console Capabilities

Everything your team needs to collect, search, and act on log data — in one console.

Live Logs view with filtering by server, application, and severity

Live Log Search

Filter and search the full indexed log corpus by server, application, severity, and free text, with results in seconds.

Dashboard with KPI tiles and severity trend

Dashboard & Insights

A daily situational summary — event volume, top devices, top applications, and today's incidents at a glance.

Saved streams with rule-based match conditions

Saved Streams

Save rule-based views over the log corpus so the whole team shares the same live investigation.

Severity report with events broken down over time

Reports & Analytics

Severity, server health, application, and security reports, all built from the same filter set.

Alert event definitions with thresholds and cooldowns

Threshold Alerting

Define what to watch, when to fire, and who to notify, with cooldowns so one incident doesn't page anyone twice.

Audit and security signal tiles for failed logins and port scans

Audit & Security

Failed logins, root attempts, sudo usage, and port scans, each signal drillable down to the actor and target.

Active Directory analytics with logons and domain controller activity

AD Analytics

Track Active Directory logons, failed logons, privileged access, and account changes across every domain controller.

IP Intelligence reputation mix and top source countries

IP Intelligence

Enrich every public IP address in your logs with geolocation, network ownership, and threat reputation.

Alerting & Notifications

Rule-driven alerting over the incoming log stream, so IT teams are notified the moment something needs attention.

Reports & Analytics

Aggregated reporting over the indexed log corpus, all sharing the same server, application, and time-window filters.

Value

Benefits

Turn scattered server logs into a searchable, actionable source of truth.

Centralized Visibility

Bring logs from every server into one searchable console instead of signing into boxes one by one.

Faster Incident Response

Rule-based alerts and saved streams surface problems the moment they start, not after a support ticket.

Stronger Security Posture

Audit & Security and IP Intelligence turn raw log noise into a real forensic trail.

Reduced Manual Server Work

Rsyslog install, discovery, and forwarding are all managed remotely over SSH, without touching each box by hand.

Role-Based Data Access

Assign specific servers to specific users, so every team only ever sees the logs relevant to them.

Lower Storage Costs

Automatic retention and archiving keep only what you need, compressing or deleting the rest on schedule.

itheon Assistant
Online