Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5385 articles
Browse latest View live

Docker Container IP Causing Issues with SEM

We are currently standing up a CentOS VM that will run as a Virtru Gateway.  I recently added the SEM Agent to this device and it checked into our Manager with the Docker Container IP (172.x.x.x)...

View Article


Re: SEM\LEM not showing all events

I'm assuming you've got the appropriate Cisco connector set up and pointing at local2 on the SEM? If that's the case, one thought is that the spanning logs may not be normalized or they may be dropped....

View Article


Image may be NSFW.
Clik here to view.

Re: SEM\LEM not showing all events

I assume I have the correct connector setup and I have it setup as raw and normalized. Keep in mind I do see some events, but not everything. I'll try your idea about the ports here in a bit when I can...

View Article

Re: SEM\LEM not showing all events

Looks good to me. I follow your description, but with some things I have a field of probabilities and don't want to make too few/many assumptions. If you're getting some data, but not what you'd fully...

View Article

Re: SEM\LEM not showing all events

So I ran the test and I see the status changes on LEM. I also got back UserLogonFailure: Logging to host (mymanagerIP) port 514 failed. I'll jump back into the switch and see if the UDP port is still...

View Article


Image may be NSFW.
Clik here to view.

Re: SEM\LEM not showing all events

Fixed, re-ran test and I do see the events... just not everything. You maybe right, something is filtering out what is displayed, I just don't know how to change it. I'll call support in a bit, take...

View Article

SolarWinds Resellers/Pricing Quotes?

Hi All,My Company is looking for an SIEM in order to help us meet NIST 800-171 logging and monitor requirements, as well as general cyber security. We are interested in a few SolarWinds products and...

View Article

Re: SolarWinds Resellers/Pricing Quotes?

A member of our Sales team appears to have been in touch with one of your colleagues. Will send you a DM to discuss further.

View Article


Re: Docker Container IP Causing Issues with SEM

It looks like the node was able to work it out on it's own after a few days, strange issue, but it seems to be happy for the moment.  I just happened to log in and check the node and the IP had updates...

View Article


Image may be NSFW.
Clik here to view.

Connector Profile - FIM

I was wondering if anyone ran into this same issue and if it is a bug. I am attempting to make a connector profile. For the most part works fine. However, I want to add FIM File and Folder, along with...

View Article

Image may be NSFW.
Clik here to view.

Re: Connector Profile - FIM

The workflow to add FIM connectors to a profile isn't as easy as it should be at the moment because we've migrated FIM to our new interface but Connector Profiles have yet to be migrated. It will be...

View Article

New file to pull into SEM, set up rules.

I have a log file for HP Content Manager that I need to pull into SEM and create rules for it. At least that is the thinking here. I put in a request for a connector, that was three months ago so I've...

View Article

Image may be NSFW.
Clik here to view.

Re: New file to pull into SEM, set up rules.

Could you please send me your case number and I can see where it's at?

View Article


Image may be NSFW.
Clik here to view.

Add List of Nodes to Connector Profile

In SEM, I've set up various Connector Profiles based on the monitoring needs of each group. However, I'm needing a better way to maintain this list without manually adding/removing nodes one at a time....

View Article

Cleaning up LEM Internal Events

Hello, I'm currently running SEM 6.7.1, and under the LEM Internal Events tab I'm receiving about 1000 events a minute. All the events are pretty much the same and have the same basic layout as...

View Article


Re: Linux Agent Log File Location?

Update -  it looks like the SW agent logs for Linux installs can now be found here: /opt/SolarWinds/Agent/bin/appdata/Logs/

View Article

Image may be NSFW.
Clik here to view.

Re: Cleaning up LEM Internal Events

You are actually running into a fixed issue that some were running into with an update that happened from Microsoft on Windows 10.I would make sure you are on the latest version which is 6.7.2 and make...

View Article


Image may be NSFW.
Clik here to view.

Importing Filter - SEM Console

After upgrading to SEM from LEM, I am still learning the differences between the old and new consoles (UI). In the new SEM Console, I don't see any way to import filters other people have made (or...

View Article

Re: Importing Filter - SEM Console

Importing and exporting has yet to be migrated from the Flash interface to the new UI. In order to share filters, you will need to go to the Flash console, however any filters that are imported to the...

View Article

Image may be NSFW.
Clik here to view.

Re: Cleaning up LEM Internal Events

Upgrading to 6.7.2 did fix the issue. Thanks so much!

View Article
Browsing all 5385 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>