Re: LEM AD Connector support for binding
Opened up a support ticket with SolarWinds. With version 6.3 and a hotfix, we now have the option to add AD groups to the configuration and then add users specifically from those groups. This meets all...
View ArticleFIM rule based on size of file
I was curious if there is a way to create a rule in my LEM to alert me if a file is created that is a certain size, for instance, 3 MB? I go into the FIM connector for a node, but I do not see any...
View ArticleAdobe Flash EOL announced - It's Time for the LEM GUI to go away
Adobe Announces Flash Distribution and Updates to End | WebKit Hopefully this is a good enough reason to get the wheels spinning @ Solarwinds.
View ArticleRe: FIM rule based on size of file
FIM does not track file size from anything that I've seen. Therefore you wouldn't be able to create a rule based on the data from FIM. The connector settings you're referencing are the types of...
View ArticleRe: Adobe Flash EOL announced - It's Time for the LEM GUI to go away
Agreed, Flash is the most disliked part of LEM from anyone I've talked to. Hopefully we get an update when they will release HTML5 version of LEM.
View ArticleRe: Adobe Flash EOL announced - It's Time for the LEM GUI to go away
At least getting it on the What We're Working On - Log & Event Manager Edition (Updated October 18, 2016) page beat the death knell of flash!
View ArticleRe: Adobe Flash EOL announced - It's Time for the LEM GUI to go away
That is definitely excellent, but is there any word on when this will be available? We definitely won't be waiting 3 years to get rid of Flash where I am.
View ArticleRe: Adobe Flash EOL announced - It's Time for the LEM GUI to go away
Hi All! Moving away from flash is a top priority for LEM. Although I can't provide any timelines, I can assure you that we are continuing to work on the HTML5 Events Console. As per the What We're...
View ArticleRe: Adobe Flash EOL announced - It's Time for the LEM GUI to go away
Good to hear - thanks for the feedback.
View ArticlePurging specific log files
Is anyone familiar with a way of purging certain types of data within the LEM as a means to trim out what's being backed up?
View ArticleRe: Purging specific log files
What are you trying to do? LEM purges data based on how much is taken up on the appliance. When it gets closer to full it deletes the partitions for the older data all at once. There is no mechanism...
View ArticleRe: Purging specific log files
You nailed it by stating the appliances limitation. We were wanting to limit what data is saved - by type not by date. As some of our government requirements expect certain logs to be retained longer...
View ArticleFIM Alerts for PCI compliance
I am having difficulty finding information on what alerts need to be given from LEM to satisfy our auditors. I am aware of what needs to be monitored and have my LEM setup for monitoring. It is the...
View ArticleRe: FIM Alerts for PCI compliance
Unfortunately this is a conversation few are going to be able to contribute to significantly. Here's what my suggestion would be: Clarify what they mean when they say "alert". To Support, an Alert is...
View ArticleRe: FIM Alerts for PCI compliance
jrouviere is right, you have to pick apart what they want from you. In some environments where I have worked with clients on LEM their auditors were looking for periodic reports highlighting...
View ArticleRe: FIM Alerts for PCI compliance
What i usually do is create a group of false positives (which is updated constantly in order to decrease false positives in reporting and also provides evidence of review). In addition, schedule a...
View ArticleIgnoring/Dropping certain log events
Could someone please point me to some documentation for how to do this? I want to ignore certain log messages coming from a designated source agent. I've been scratching my head over this for hours....
View ArticleConnector Updates failing
Just recently I have been receiving an error when attempting to update my connectors. The error reads: "Error while updating connectors for manager" When I click Show More, I get: "Synchronization with...
View Article