Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5385 articles
Browse latest View live

Re: Not able to fetch logs from Centos linux

If it helps, here's a profile I use in our SE lab to collect from Centos systems.

View Article


Re: Issue - Rule Creation Logic vs nDepth Logic

Ok thank you, I think that answers the question.  It is unfortunate that we can't perform manual searches against our historical data in LEM for the purpose of testing correlation rules.  Is this a...

View Article


Image may be NSFW.
Clik here to view.

Re: SolarWinds Log & Event Management support for Apple Macintosh systems

Jamie,While the software does require legacy Java, I was mistaken about having to relax Apple gatekeeper settings.  If you would prefer, please delete thisthread and I can start a new one. Would it be...

View Article

Re: SolarWinds Log & Event Management support for Apple Macintosh systems

Hi Edwin, Thanks for the update regarding the Gatekeeper settings. Unfortunately we aren't in a position to share an updated Mac client at the moment, but I'll be sure to keep you in the loop on...

View Article

Database Maintenance and Log Storage

I am needing to find and monitor statistics on our log database in LEM. I am able to run diskusage in CMC, but need more details than that provides. KB articles and the User Manual say there are...

View Article


Re: Database Maintenance and Log Storage

In the LEM Reports console, make sure you're under "Standard Reports" in the category (upper-left corner drop down in the ribbon).  You should be able to get the Database Maintenance Report in that list.

View Article

Re: SIEM: Log & Event Manager and Log & Event Manager difference?

They are the same product, you're looking at two different marketing pages.  One highlights the SIEM function of LEM, the other the log management functions; they are both for the same product.

View Article

LEM Maxed out License

I know what happens when NPM has an expired license, but what repercussions occur when you're at your max limit of licenses for LEM? Can you still add nodes? Does anything stop if you go over the...

View Article


Re: LEM Maxed out License

The LEM will refuse connections and data from nodes above and beyond your license limit.

View Article


Re: LEM Maxed out License

Awesome! This was what we were assuming when we couldn't add any more nodes in. But you know where assuming gets you  Thanks again!

View Article

Re: SIEM: Log & Event Manager and Log & Event Manager difference?

Aaaah, okay then. Thank you

View Article

LEM & Edgewater/EdgeMarc device

Anyone have any success getting syslogs to LEM from an Edgewater device? We are seeing the traffic from the Edgewater logs, on the firewall, but not 'receiving' them in LEM. Edgewater support indicates...

View Article

Image may be NSFW.
Clik here to view.

Re: LEM & Edgewater/EdgeMarc device

You could always try to send it to a Kiwi syslog sever.  Then you could do a wireshark in between if it is not getting there.

View Article


Re: How do i export the compressed logs from the appliance?

If it is syslogs specifically that you are looking to export. The Ones you see in CMC > Appliance > Checklogs. You can use the exportsyslog command: Export log files using the CMC exportsyslog...

View Article

Re: How do i export the compressed logs from the appliance?

For the syslog dumps, what silverwolf says will work. If you want to dump the LEM's internal database, you can do that with the backup commands described here: Configure Backups on your LEM Appliance -...

View Article


Image may be NSFW.
Clik here to view.

Re: LEM & Edgewater/EdgeMarc device

Looking at my list of connectors, I don't see EdgeMarc or EdgeWater as currently supported sources.  It's possible LEM is getting the syslogs, but has no idea what to do with the information to make it...

View Article

How do I include the Event Log's Description in an email alert?

I see the Description field shows up as "WarningMessage" field in the events collected by LEM.How can I include the contents of this in an email alert? Thank you!Sam

View Article


MSSQL Auditor

Hello Everyone, Is it possible to capture any event of local SQL user creation or deletion using MSSQL Auditor? Appreciate anyone who can share guidance or configuration for this requirement?

View Article

LEM Oracle Table Read

Dear All I am stuck in catering one of my application logs. Application is generating audit logs that is being stored on Oracle DB table. I want LEM to read those logs from that table and show us on...

View Article

Image may be NSFW.
Clik here to view.

Re: MSSQL Auditor

Yes, it is possible.

View Article
Browsing all 5385 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>