Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5385 articles
Browse latest View live

Re: How Can we calculate approx sizing of database for all orion...

LEM has its own database. The VM appliance defaults to 250GB but you can extend it as needed.

View Article


Re: Will the Linux auditd collector collect logs from other nodes that have...

In theory, I don't see why this wouldn't work as long as the logs are in the format that the agent can normalize.

View Article


Image may be NSFW.
Clik here to view.

Re: LEM agent auto-upgrade?

I have received conflicting information on that.  I had one SW support person tell me that the Linux agents should auto-update while another support person tell me that they do not.  If they in fact do...

View Article

Re: How Can we calculate approx sizing of database for all orion...

the question is  that how will we do the sizing according to their devices/nodes that how much storage we need to have in a month so that calculation will be easy for a year. is that possible?

View Article

Re: LEM Thoughts of the Week: How do your Security, Network, and Systems...

This is very similar to our set up.  We all have access to the same tools.  We all get the incident alerts..etc.  The line becomes blurred however when we have to show our auditors separation of duty....

View Article


Re: LEM Thoughts of the Week: How do your Security, Network, and Systems...

Due to the smaller size of our company we don't really have a specific security team.  Our infrastructure team (network, windows, linux, storage, etc) are all responsible for security.  Our engineers...

View Article

Re: LEM agent auto-upgrade?

I experienced this same issue but we had 5.7 RC to 6.0. 

View Article

Image may be NSFW.
Clik here to view.

Re: Need to add Domain Controllers to LEM

In my environment, we have 5 Domain Controllers across 3 different domains.  We added all domain controllers to LEM. This covers everything and if you plan on tracking logon/logoff, change management...

View Article


Is there a way to change the subject on ndepth reports

I've started getting a few more nDepth reports and they all have the same subject. Is there a quick and easy way to change the subject on these emails?

View Article


Image may be NSFW.
Clik here to view.

would anyone know what event ID can be used to monitor login by domain...

been working with Solarwinds support to no avail. we've tried event ID's 4624 and 4648.4624 is captured by logging on using the domain\administrator but also includes all chatter from servers and other...

View Article

Re: Is there a way to change the subject on ndepth reports

If you are referring to the scheduled searches via nDepth.  I don't believe you can change the subject they will come through as Scheduled search.

View Article

Image may be NSFW.
Clik here to view.

Re: would anyone know what event ID can be used to monitor login by domain...

You want to track domain admin logins to a specific DC only? In any case, 1. Enable the Directory Services query tool on the LEM appliance first2. Create a User Defined Group for "Domain Admins"You can...

View Article

Re: Custom Application Logs

I too would like to see the ability to create a custom connector.  We use Node.js and would like to consolidate the logs with LEM.

View Article


Image may be NSFW.
Clik here to view.

Re: LEM agent auto-upgrade?

Make sure you have Global Automatic Updates enabled.  Manage > Appliances > Properties section under Settings tab.

View Article

Unknown Hosts Attached

Still trying to get some alerting in place. During our last security audit the question came up on the ability to detect unknown hosts attached to the network. Do any of you know how to setup an alert...

View Article


Re: Unknown Hosts Attached

jeremya: I'm not 100% certain the LEM is the very best way to track this, but tools like IP Address Manager or Network Performance Monitor could help. That said, the LEM does have the ability to look...

View Article

Image may be NSFW.
Clik here to view.

Looking for SolarWinds LEM Consulting Service

Can anyone recommend experience SolarWinds LEM professional service providers for:- Upgrade from LEM appliance to VM- Systems configuration and customization Let me know, thanks.

View Article


Re: Does LEM support PostgreSQL

I don't need the auditing, I just need to capture the logs, for example in our case they are the ones located at the following path... /data/pgsql/DATABASE/pg_log/postgresql-2014-MM-DD.log

View Article

Re: Does LEM Support Apache Servicemix?

Similar answer on this one - I found some detail on the logging and some options, so this might overlap with other connectors we've already built, but I know we don't have specific connectors for this...

View Article

Re: Is there a way to change the subject on ndepth reports

Feel free to submit a feature request on this one. Also, if you have some ideas of better generic text (or text pulled from the data - like the name of the search and the time it ran?) that might be a...

View Article
Browsing all 5385 articles
Browse latest View live