Quantcast
Channel: THWACK: Popular Discussions - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5911 articles
Browse latest View live

No response from support

I haven't posted here in quite some time, but I have an issue with Technical Support.  I have a LEM appliance continuing to show file system errors on one of the mounted file system.  I followed the...

View Article


want help to create a rule in LEM

Hi,  I was just creating a rule in LEM in which i want  multiple events clubbed in, like an alert /rule will fire if three failed login attempts -two attempts from same user and one attempt from...

View Article


Filter assistance handling multiple accounts targeting one system, and one...

I’m trying to build a couple LEM filters. We’ve got 2 different filters we need to make, to accomplish the following…. * Failed login attempts of multiple accounts, in a short period of time, on one...

View Article

How to configure the Windows server and Linux server not to install the Agent...

Buy LEM and KIWI SYSlog, due to environmental requirements cannot be installed on the Windows server and Linux server Agent, need how to operate in the case of not to install the Agent, send logs to...

View Article

correlation rule for windows login

Dear Friends,  I just want to create a rule for windows domain controller login attempt.if three failed attempts from same machine and then passed logon attempt from same machine, should alert a rule....

View Article


MSSQL Auditor Functionality

Hi,   Can anyone tell me what level of auditing is provided by this agent?  WIll it pick up if someone modifies data using a query window?  Thanks,Todd

View Article

Need LEM agent UNinstaller

Where can I get the manual uninstaller for the LEM agent? It does no good to tell me to get it from the customer portal because I was just evaluating the software. Would be nice if you would make the...

View Article

Issue - Rule Creation Logic vs nDepth Logic

I've been having an issue working with nDepth to perform log searches vs. working in the Rule builder.   When I create a Rule, the logic allows me to pull in logs from various different event sources,...

View Article


Collecting Log4Net app logs in Azure with LEM

Hello, I am a customer (of Orion and LEM) and was hoping to leverage the LEM to monitor disparate applications logs across our enterprise. I wanted to start with a simple web app that we are about to...

View Article


How to create rules if there is a change made on Fortigate FW or Cisco Router

Hello, I am just starting on this new company and in which they are using Solarwinds LEM.I am starting to familiarize on how to utilize this device as I dont have knowledge on LEM.After watching...

View Article

Image may be NSFW.
Clik here to view.

Configuring SSO for LEM

I am attempting to configure AD integration for LEM (6.3.1) and for the life of me, I cannot get it to function correctly.  I contacted tech support and they sent me this article.  When I get to the...

View Article

monitor AD group membership changes

All-I have a large number of active directory groups that need to be monitored. the groups in question all have a naming convention of "SG-servername_Support". I want to be able to have an notification...

View Article

SolarWinds Log & Event Management support for Apple Macintosh systems

As things stand now in order to run the SolarWinds legacy software Agent we have to relax Apple’s Security & Privacy Gateway policy as well as utilize legacy Java - are there plans to update the...

View Article


Need LEM agent UNinstaller

Where can I get the manual uninstaller for the LEM agent? It does no good to tell me to get it from the customer portal because I was just evaluating the software. Would be nice if you would make the...

View Article

Not able to fetch logs from Centos linux

Hi all,  I installed and added centos machine but not getting any single log from that . what can I do ?

View Article


Image may be NSFW.
Clik here to view.

How do i export the compressed logs from the appliance?

How do i export the compressed logs from the appliance?

View Article

Store and Retrieve Windows Event Logs

Our security posture requires that we store Windows Event Logs (Application, System and Security) for one year. I am still relatively new to LEM, so am not sure archiveconfig will meet this requirement...

View Article


How to monitor activity by users of the admin group

can someone tell me how to create a rule in LEM to show activity by the administrator user or users in the admin group.  Or is there perhaps a report in the  SW LEM reports module? thank you......Rick

View Article

LEM agent question

Does the spop.conf query its info directly from a file on the LEM box?  For some reason when installing the agent on a brand new machine the spop.conf is populating with the old appliance IP address....

View Article

Database Maintenance and Log Storage

I am needing to find and monitor statistics on our log database in LEM. I am able to run diskusage in CMC, but need more details than that provides. KB articles and the User Manual say there are...

View Article
Browsing all 5911 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>