Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5385 articles
Browse latest View live

Re: Changing the default port for LEM Cisco IPS 5+ connector

We're working on a change to the connector (which will be uploaded to the portal) that will enable this - it's something we can do, just not exposed. Portal updates usually hit once a week (or every...

View Article


How to import apache log files into LEM

All, I need to analyze a huge amount of Apache logs.Now I had the idea to import them into LEM.Any idea how to get this done?, Thank you in advanceHeiko

View Article


Re: How to import apache log files into LEM

You will need to install the LEM agent on the boxes with the Apache logs and then configure the Apache connector for the Apache logs on those systems from the LEM console. Hope this helps!

View Article

Re: New Log & Event Manager (LEM) Library & Support Page!

Thank you for this. I love it.

View Article

Re: How to import apache log files into LEM

Thank you byrona, in this case this is impossible. We got the logfiles from our Hosting Provider and we now need to analyze them without having direct Access to the physical boxes. /Heiko

View Article


Re: Changing the default port for LEM Cisco IPS 5+ connector

It's up! Refer to this KB to apply it: SolarWinds Knowledge Base :: How to apply a LEM connector update package You'll want to delete any configured SDEE connectors you might have before trying again...

View Article

Re: Changing the default port for LEM Cisco IPS 5+ connector

Thanks. Where would I find the file(s) to download?

View Article

Re: Changing the default port for LEM Cisco IPS 5+ connector

There's a link in the KB - here: http://downloads.solarwinds.com/solarwinds/Release/LEM/SolarWinds-LEM-Connectors.zip

View Article


Re: Error message when adding Directory Service Group

One thing to note with "Domain Users" and whatever users have set as their "Primary Group" is that those groups aren't updated like normal groups and LEM can't "see" their members with the LDAP...

View Article


Re: How to import apache log files into LEM

There are limitations to feeding data into LEM after the fact - the most notable of which is that all your data will be searched and reported based on Detection Time and the time on the appliance,...

View Article

Re: How to import apache log files into LEM

Thank you for the nice workaround.... /Heiko

View Article

User Defined Groups and Variables

I created a "white" list for wireless connections. Is there a way to use the variable under the User Defined Group (Name) so that when the MAC address is flagged it will email the Name that you set in...

View Article

Image may be NSFW.
Clik here to view.

Re: vCenter Logging

Thanks for the note Nicole.  I spoke with someone in support today, we opened an NCR, and we did a little more digging.  The type of events that I think would be helpful are administrative, such a user...

View Article


Windows Machine Automatically Logs Out Users

I have installed the LEM host agent on a few Windows machines.  However, there are times in which I will get automatically logged out for no reason.  If I try to log back in, I immediately get logged...

View Article

Re: TripWire Connector: How to use?

I used the guide to set up the actions/rules.  Thank you for that.  Do I then have to set up a rule in LEM to see the logs in the GUI?  I can see the logs from our Tripwire box logging to...

View Article


Re: TripWire Connector: How to use?

You will need to configure a connector in LEM for TripWire.

View Article

Re: TripWire Connector: How to use?

Blah nevermind.  We had a WAF logging to the same local log.  I tweaked Tripwire to log to local5 on LEM and I'm seeing it correctly now. 

View Article


Re: TripWire Connector: How to use?

Awesome, glad you have it working!

View Article

Re: User Defined Groups and Variables

Sorry, I guess I could have been a bit more clear. Under User Defined Groups you have 3 fields, Name, Data and Description. The Name field is a unique identifier. When I white list an item I have...

View Article

Re: NATO5 rules in LEM?

I'm using the 5.5.0 eval. Thanks.

View Article
Browsing all 5385 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>