Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5385 articles
Browse latest View live

Image may be NSFW.
Clik here to view.

Re: Collect Raw Logs

Hi, Thanks for reply. I am aware of the KB and already configured the nDepth.  But as there is no connector/tool for synology I could not configure the last part.  I understand that I can submit sample...

View Article


Image may be NSFW.
Clik here to view.

Re: nDepth histogram x-axis timezone incorrect

If you go to the CMC shell on the LEM, go to APPLIANCE, enter DATECONFIG and hit enter 4 times, what timezone is the LEM set to? You can use the TZCONFIG command under the APPLIANCE menu to change the...

View Article


Re: OPSEC connector session error

I've used these steps to get CheckPoint working in the past:http://knowledgebase.solarwinds.com/kb/questions/3158/Integrating+Check+Point+with+SolarWinds+LEM So, it appears that you have the Opsec...

View Article

Image may be NSFW.
Clik here to view.

Re: Process stop monitor

There is a ProcessStop event:  However, I'm not sure how useful it is for critical processes.  In my lab, in the last week with both my workstation and a couple servers, I only had these 4 events and...

View Article

Re: agent intsaller issues

Curtis - Thanks for the input. Remote Installer - 1. No, we do not block any NetBIOS on the network. 2. the account I am using is a Domain Admin. 3. Yes, the ports are opened. Local Installer -I don't...

View Article


Re: agent intsaller issues

Here is a link to a KB that has a couple agent downloads available to eval customers: SolarWinds Knowledge Base :: Additional LEM downloads for version 5.7 Thanks,-Chrystal TaylorLoop1 Systems:...

View Article

Re: agent intsaller issues

Remote Installer -Even logged in as a Domain Admin, Microsoft has to protect us from ourselves.  Are you running the remote installer with the right-click "Run as Administrator" option to make sure...

View Article

Image may be NSFW.
Clik here to view.

Having trouble getting rules to fire

Should this not send an alert email whenever a user fails to log on to one of the monitored endpoints?  The filter appears to be capturing the event, but the rule is not firing. I am not sure what I am...

View Article


Image may be NSFW.
Clik here to view.

Console not responsive and keeps crashing

I am experiencing horrible performance in the console.  The console session will crash my browser session. This is interesting because the appliance has been running for 8 weeks during a demo with no...

View Article


Re: Having trouble getting rules to fire

One, try expanding the response window to something like 5 minutes.  1 second response windows don't work very well. Two, have you clicked the "Activate Rules" button?

View Article

Re: Console not responsive and keeps crashing

   Clock      Synchronization : Enabled      Hypervisor Time : 18 Mar 2014 16:59:29      Guest Time      : Tue Mar 18 17:07:44 2014You have an almost 10 minute discrepancy in the time between host and...

View Article

Image may be NSFW.
Clik here to view.

Re: Console not responsive and keeps crashing

Thanks for pointing this out.  I didn't notice it before. Before I ran the dateconfig command as you suggested, I ran viewsysinfo again to see what the disparity was between the hypervisor and the...

View Article

Image may be NSFW.
Clik here to view.

Re: Console not responsive and keeps crashing

After a little more investigating we found that the VM setting for synchronizing guest time with host was checked.  This is not a setting that we modify on VM guests so I have to assume that it was set...

View Article


Image may be NSFW.
Clik here to view.

Rule if System event Level Critical, then it sends me an email

Working on Createing a "Rule" so that if there is a "System" event of "Level Critical" that it sends me an email about it. Any tips appreciated. So far I've clicked on Build > Rules, but now...

View Article

Re: Rule if System event Level Critical, then it sends me an email

Critical on what kind of system?  Can you provide a screenshot or sample event so we can look at the sort of event you want to rule on?

View Article


Re: LEM Thoughts of the Week: Tell Your Favorite "Found in the Logs" Story

Not LEM, but could easily have been used in that way: A few jobs ago, I was a contractor for a large federal agency where we installed SolarWinds for one of their departments. They had a pretty...

View Article

Image may be NSFW.
Clik here to view.

Re: Rule if System event Level Critical, then it sends me an email

I want to be emailed anytime there is a Critical level error on any of our servers. Below screenshot is an example of a critical error on my PC. I'm looking at some video tutorials now to try and learn...

View Article


LEM - MS SQL Auditor

Hi All, I am due to install MS SQL auditor for LEM and use it to monitor changes to tables and schemas and wondered if anyone else has had any experiences with this agent? I am also wondering if there...

View Article

Re: LEM - MS SQL Auditor

Hi Evan, Do your logs rotate after a retention period? I will have a review of the admin guide regarding deployment. Thanks for your prompt response.    

View Article

Re: LEM - MS SQL Auditor

We have this installed and running in our SQL clustered environment.  We have the plugin installed directly on our SQL servers.  However you should be able to deploy it to a specific machine then plug...

View Article
Browsing all 5385 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>