Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Viewing all articles
Browse latest Browse all 5385

Re: lack of data

$
0
0

Geff,

 

I see your question has gone unanswered and I will try to give you a meaningful answer to your query, though I suspect after 9 days you may have self-resolved your issue.

 

Once you have added an agent node to LEM, you need to enable connectors for each node.

Select the node > click the gear icon > Connectors.

Find a connector (you can refine the results shown using the search function.

Click the gear icon next to a connector > New.

Check the connector values. Pay attention to the output method and select the desired type (you can change this later if necessary). Alert will only send to the alerts and not be logged. Send to nDepth and you will be able to perform search queries and reports on events. Select both for full functionality.

Click Save then click the cog icon again and Start to start the connector.

 

The connector will now begin to poll the relevant log on the node and forward these events to LEM. If for example this log is a Windows log, ensure that events are being generated on the node to confirm the connector is configured as expected.

 

 

I hope that this helps.

 

-Garreth


Viewing all articles
Browse latest Browse all 5385

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>