Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5385 articles
Browse latest View live

Re: LEM AD Connector support for binding

Opened up a support ticket with SolarWinds. With version 6.3 and a hotfix, we now have the option to add AD groups to the configuration and then add users specifically from those groups. This meets all...

View Article


Image may be NSFW.
Clik here to view.

FIM rule based on size of file

I was curious if there is a way to create a rule in my LEM to alert me if a file is created that is a certain size, for instance, 3 MB? I go into the FIM connector for a node, but I do not see any...

View Article


Adobe Flash EOL announced - It's Time for the LEM GUI to go away

Adobe Announces Flash Distribution and Updates to End | WebKit Hopefully this is a good enough reason to get the wheels spinning @ Solarwinds.

View Article

Re: FIM rule based on size of file

FIM does not track file size from anything that I've seen.  Therefore you wouldn't be able to create a rule based on the data from FIM.  The connector settings you're referencing are the types of...

View Article

Re: FIM rule based on size of file

Well bummer, thanks anyways!

View Article


Image may be NSFW.
Clik here to view.

Re: Adobe Flash EOL announced - It's Time for the LEM GUI to go away

Agreed, Flash is the most disliked part of LEM from anyone I've talked to. Hopefully we get an update when they will release HTML5 version of LEM.

View Article

Re: Adobe Flash EOL announced - It's Time for the LEM GUI to go away

At least getting it on the What We're Working On - Log & Event Manager Edition (Updated October 18, 2016) page beat the death knell of flash!

View Article

Image may be NSFW.
Clik here to view.

Re: Adobe Flash EOL announced - It's Time for the LEM GUI to go away

True that!

View Article


Re: Adobe Flash EOL announced - It's Time for the LEM GUI to go away

     That is definitely excellent, but is there any word on when this will be available? We definitely won't be waiting 3 years to get rid of Flash where I am.

View Article


Re: Adobe Flash EOL announced - It's Time for the LEM GUI to go away

Hi All! Moving away from flash is a top priority for LEM. Although I can't provide any timelines, I can assure you that we are continuing to work on the HTML5 Events Console. As per the What We're...

View Article

Re: Adobe Flash EOL announced - It's Time for the LEM GUI to go away

Good to hear - thanks for the feedback.

View Article

Purging specific log files

Is anyone familiar with a way of purging certain types of data within the LEM as a means to trim out what's being backed up?

View Article

Re: Purging specific log files

What are you trying to do? LEM purges data based on how much is taken up on the appliance.  When it gets closer to full it deletes the partitions for the older data all at once.  There is no mechanism...

View Article


Re: Purging specific log files

You nailed it by stating the appliances limitation. We were wanting to limit what data is saved - by type not by date. As some of our government requirements expect certain logs to be retained longer...

View Article

FIM Alerts for PCI compliance

I am having difficulty finding information on what alerts need to be given from LEM to satisfy our auditors.  I am aware of what needs to be monitored and have my LEM setup for monitoring.   It is the...

View Article


Re: FIM Alerts for PCI compliance

Unfortunately this is a conversation few are going to be able to contribute to significantly.  Here's what my suggestion would be: Clarify what they mean when they say "alert".  To Support, an Alert is...

View Article

Image may be NSFW.
Clik here to view.

Re: FIM Alerts for PCI compliance

jrouviere is right, you have to pick apart what they want from you.   In some environments where I have worked with clients on LEM their auditors were looking for periodic reports highlighting...

View Article


Image may be NSFW.
Clik here to view.

Re: FIM Alerts for PCI compliance

What i usually do is create a group of false positives (which is updated constantly in order to decrease false positives in reporting and also provides evidence of review). In addition, schedule a...

View Article

Ignoring/Dropping certain log events

Could someone please point me to some documentation for how to do this?  I want to ignore certain log messages coming from a designated source agent.  I've been scratching my head over this for hours....

View Article

Image may be NSFW.
Clik here to view.

Connector Updates failing

Just recently I have been receiving an error when attempting to update my connectors. The error reads: "Error while updating connectors for manager" When I click Show More, I get: "Synchronization with...

View Article
Browsing all 5385 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>