Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Viewing all articles
Browse latest Browse all 5385

Re: Re: Is there a place to find recommended or sample filters, rules and reports?

$
0
0

First, you're going to need to configure your LEM to be able to talk to Active Directory.

SolarWinds Knowledge Base :: How to Configure the Directory Service Query Connector

 

Then, you'll need to bring in your Domain Admins group to the LEM, it's kind of like this process, but under Build > Groups click the + and then go to Directory Service Groups.

SolarWinds Knowledge Base :: How to create LEM console users with domain credentials

 

Now, we can make a filter.

 

2015-02-24 16_30_59-SolarWinds Log & Event Manager.png

 

I think that would get you all setup for watching Domain Admins do things in real time.


Viewing all articles
Browse latest Browse all 5385

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>