Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5385 articles
Browse latest View live

Re: Login Failure Doesn't Detect IP

curtisi  I continue to struggle with the fact LEM is showing hostnames and not IP addresses.  For security auditing purposes it makes it almost impossible to detect the source of potentially malicious...

View Article


Image may be NSFW.
Clik here to view.

Re: Login Failure Doesn't Detect IP

I want to check a few things about this. Are the events syslog from a network device, or windows events from an agent node? If the latter, I am wondering if the event itself contains the hostname and...

View Article


Re: Downgrading LEM appliance to syslog only server??

Zack,   Thanks for the reply.  Sorry for the delayed response.  I'll look through what you posted.  Appreciate the help

View Article

Re: user logon tracking

Thanks very much. that did the trick.!

View Article

Image may be NSFW.
Clik here to view.

Re: Export Email Templates

Hi Nicole,Has this feature been added in LEM 6.0.1? I really need this right now.Thanks,Lucy

View Article


Re: I am going to be testing out LEM. I would like to know if i can install...

I have demonstrated LEM using vmware player from my laptop to prospective clients and can confirm it works in this manner. My laptop is an Intel i5 with an SSD and lots of RAM, so it does host it well...

View Article

Re: Need LEM agent UNinstaller

Hi, Customers can find the download link in their customer portal. If you are evaluating, it is not publicly available from the SolarWinds site, but below is the link for your convenience....

View Article

Re: Export Email Templates

Hi Lucy, LEM 6.0.1 has the export option greyed out for email templates. Raising a feature request for this if one does not exist is the way forward. +1 for enabling the export option.

View Article


Re: LEM agents and log fowarding

Hi, If an agent is configured to communicate with an LEM manager, it will establish a TCP connection and you will see heartbeat traffic between the manager and agent. Only logs configured in the...

View Article


Re: Brocade ICX

We had the same issue initially and had to add the device type to NCM and it's OID using a template from customer support.  Currently our shop is all Brocade ICX 6610s.  What versions and what...

View Article

Re: Brocade ICX

Hi, Thanks for the reply. I don't a device type NCM on mine. I am running 6.0.1.

View Article

Can't install agent on linux OS

Hi All,      I'm testing LEM 6.0.1 software for collecting windows and linux servers' syslog. As the configuration guide, we need to install the agent on window and linux server. When installing the...

View Article

Image may be NSFW.
Clik here to view.

Re: FIM on 6.0.1

What does the mask field look like in your condition?  The default is *.* however directories typically don't have a . in their name.  Therefore the default condition will not pick up directory...

View Article


Re: Brocade ICX

If you're purely looking for syslog traffic, you do have the logging host statement in your ICX config, right? logging host X.X.X.X (the IP of your Solarwinds server or where you're running the logging...

View Article

Image may be NSFW.
Clik here to view.

Troubles getting Cisco Ironport/WSA to appear in LEM

I have setup the "Data Security Logs" log in my WSA to send syslog to my LEM server using UDP and Local7.  I have verified that the WSA is sending out syslog, but LEM does not appear to be parsing the...

View Article


Image may be NSFW.
Clik here to view.

What connector do I use for Trend Micro InterScan Web Security Virtual...

I do not see the product in the list of connectors on LEM. I'm sending IWSVA's syslog to both LEM and my workstation; my workstation receives the syslog messages but LEM does not pick it up as a new...

View Article

Re: LEM agents and log fowarding

Thanks for your reply.

View Article


LEM reports export

Hello, Is it possible to export LEM reports to a network share rather than to the local drive?

View Article

Image may be NSFW.
Clik here to view.

Clear the LEM database to start fresh

Hello, Recent LEM purchaser and very happy. I have a LEM environment now - but I'm looking to officially start running on it JAN 1 2015. Until then my old system will be running. Right now LEM is...

View Article

Kaspersky Endpoint Security 10

Has anyone used LEM to monitor Kaspersky Endpoint Security 10 clients?  I need to monitor both AV and patching on clients

View Article
Browsing all 5385 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>