Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Viewing all articles
Browse latest Browse all 5385

Re: Identifying the source IP of LEM Alerts in email notifications

$
0
0

Okay, that's easier to solve.  If you edit the rule, you'll see it has a "Send E-mail" action, and that action specifies fields.  If you're using the Default Template, those fields are "Event Info" and "Detection Time."  There's no field for Detection IP!

 

You can add one, or make your own template.  For example, I created this template in my lab:

 

2015-12-08 15_38_22-SolarWinds Log & Event Manager.png

 

You'll notice it has a lot more than 2 fields!  Then you can use this template in your Action, and it'll include all the fields you want.

 

In your rule, you'd follow these steps (I made a video):

 


Viewing all articles
Browse latest Browse all 5385

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>