Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5385 articles
Browse latest View live

Re: Integration of LEM with WHD ticketing system

Thank you for your answer. But in this case, WHD will pick the email from the mailbox to which LEM is sending notification email and generates a ticket, right? Apart from this can WHD import all the...

View Article


Re: Filter and Alert for Health resource utlization

Logs are here <189>date=2016-05-21 time=15:55:21 devname=FGVM010000063601 devid=FGVM010000063601 logid=0100040704 type=event subtype=system level=notice vd=root logdesc="System performance...

View Article


Re: Can LEM accept RSYSLOG?

The connector is going to be expecting a specific format, likely the original format of the firewall.  If rsyslog manipulates/changes the log lines, the connector isn't going to know what to do with...

View Article

Re: Integration of LEM with WHD ticketing system

WHD cannot pull nodes from LEM, but you could have the LEM send the detection IP/node in the e-mail, and possibly create some action or process to modify or assign tickets based on that part of the...

View Article

Re: Filter and Alert for Health resource utlization

You can send SNMP to LEM, but LEM can't use SNMP for Reports or Alerting. It's just stored and searchable.Do you have one of these events as it's normalized by LEM?  How does it appear in nDepth or the...

View Article


Re: Can LEM accept RSYSLOG?

Can you rsyslog log to a text file in an unmodified format? If so, you should be able to install the LEM Agent on the rsyslog server, and enable a connector on the agent node to read the firewall log...

View Article

Re: Can LEM accept RSYSLOG?

Great. So if I install Lem agent on rsyslog server, which IP will it detect for the Node?? I mean to say how LEM agent will read the Node's IP and show it on LEM console??

View Article

Re: IP or Hostname or appliance key

So, LEM will present what's in the log data, and I think within LEM's syslog config the hostname resolution for syslog is off because it can create performance problems. It is a syslog-ng option,...

View Article


Image may be NSFW.
Clik here to view.

Re: Can LEM accept RSYSLOG?

The key question is - can rsyslog log to a text file in an *unmodified* format? If so, the approach should work. It will associate the logs with the source IP and also consume 1 node license for each...

View Article


Re: Can LEM accept RSYSLOG?

Ok. I will check in rsyslog. I have one more scenario.Firewall is deployed in customer location and from there it points syslog to syslog-ng server which acts as a relay and relays logs to central...

View Article

Re: Checkpoint connector for r75.40 SPLAT

We have gotten the checkpoint connector to work on the LEM, but are we able to see user activity level? curtisi

View Article

Re: Checkpoint connector for r75.40 SPLAT

The connector will connect to both the 'admin' and the firewall logs, so you will see things like logons to your management station and policy pushes in addition to all the firewall blocks.

View Article

Re: Checkpoint connector for r75.40 SPLAT

will i be able to see logs from users? similar to smartview tracker?

View Article


Re: Filter and Alert for Health resource utlization

Then it's of no use actually. I will check NPM then. Thank you.

View Article

LEM Agent for Firewall/UTM

Firewall is sending syslog to LEM over internet but in that case when there is an internet outage, we lose the logs. Can we install a LEM agent in windows/linux machine in customer premise where...

View Article


Can we rebrand the reports?

Hello Everyone, Can we re-brand the reports by replacing the Solarwinds logo with ours in reports while exporting it or while sending over an email? If yes, how to do that?When I click on Schedule in...

View Article

LEM Agent on CentOS

Hello Everyone, I have installed LEM agent on Syslog-ng server which is running on Cent-OS 7. Have following questions. 1. From which location within the syslog-ng server LEM will fetch the logs and...

View Article


Re: How to customized reports solarwinds LEM

Hello Byrona, Was just going through this thread as I am looking for LEM report customization for the rebranding purpose. So can I customize and replace all the stuffs of logo/text of Solarwind in...

View Article

Image may be NSFW.
Clik here to view.

Re: Checkpoint connector for r75.40 SPLAT

From what I've seen, everything you see in SmartView Tracker should be present in the LEM data, but I think in a few cases SmartView Tracker might pull together different sources in a different view...

View Article

Re: LEM Agent for Firewall/UTM

The Agent isn't listening on any port for Syslog traffic, nor does it have to have the ability to receive syslog directly.  Something else would need to do that and write it to the file system (like...

View Article
Browsing all 5385 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>