# Log Management

Logs

&#x20;

* System Logs
* * Powshell activity
  * Dns activity
  * Sysmon logs
  * File integration monitoring logs

&#x20;

&#x20;

&#x20;

&#x20;

* Application Log
* * Usage information
  * Client requests
  * Server responses
  * User authentication attempts
  * Configuration changes
* WebServer Logs
* Firewall logs
* Windows firewall logs
* Router logs
* Switches logs
* Proxy logs
* Reverse logs
* DNS Server logs
* DNS Revers proxy logs
* Load balancer logs
* VPN Logs

&#x20;

&#x20;

Security Data/ security log

&#x20;

* LSASS
* * Local security authority subsystem service
* Active Directory Logs
* Domain controller logs
* Kerberos logs
* IAM Logs
* PAM Logs
* IDS logs
* IPS Logs
* NGFW logs
* Antivirus logs
* Cloud service/provider logs
* EndPoint logs
* * Mobile
  * Windows defender logs
