Quantcast
Channel: THWACK: Popular Discussions - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5911 articles
Browse latest View live

Getting error using LEM Reports

This is the error I get when I try to start any report (see attached picture).We have LEM registred and licensed and since Reports are basicaly separate app, the question is do we have to...

View Article


Monitor additions to the Administrator Group

How can i have LEM e-mail me when someone is added to the Administrators?

View Article


Set ACLS to members in adminsitration group

Being new to Solarwinds LEM, I am not sure how to resolve the following error message that we continuously receive:  set acls of members in administrators group. We have done a search on how to resolve...

View Article

Removing items from reports

I have LEM up and running in my lab and it is working wonderfully. The only Issue I am having is with the reports. I am able to filer out the data (rows) that I don't need, but am unable to remove...

View Article

How do I configure the SNMP community string for LEM?

I haven't been able to find the setting whereby I can configure the SNMP read-only community string for the LEM appliance, so that I can monitor its health/set up alerting etc through Solarwinds NPM. I...

View Article


Threat Intelligence with LEM

How threat intelligence with LEM works for Syslog traffic received from Firewall/UTM?   Does it check IP reputation with external threat database or downloads and stores threat database locally on...

View Article

SolarWinds Event Log Consolidator

Just installed SolarWinds Event Log Consolidator on my Windows 2012 R2 Standard Server Had to install netframe 3,51 first strange that solarwinds cant work with netframe 4.5 which 2012 installs but...

View Article

What is CMC Credential ?

Hi all, I am new to LEM, can somebody tell me what exactly is CMC Credential and where do I find it ? Am I able to reset CMC password ? Because previous user didn't leave any documentation. Thanks in...

View Article


Getting user session lengths

Is this a possibility in LEM? If so how does one build a report for it? Thanks for the help.

View Article


Adding a Syslog node

I am running a practice VM of Solarwinds LEM at home. I have a dlink router which used to send logs(web access) via syslog to kiwi syslog server. At about 1500 logs per hour. I changed the dlink router...

View Article

Cisco ASA and syslog severity levels

What severity level is recommended for Cisco ASA? Thoughts? We are seeing dropped connection and this feels informational. Cisco ASA 5500 Series Configuration Guide using the CLI, 8.2 - Configuring...

View Article

LEM

I want to know that, how can LEM provide details about the given points below: Microsoft Windows Active Directory ServerUnusual Login Activity (from different locations/country)Unauthorized Password...

View Article

Image may be NSFW.
Clik here to view.

Configuring SSO for LEM

I am attempting to configure AD integration for LEM (6.3.1) and for the life of me, I cannot get it to function correctly.  I contacted tech support and they sent me this article.  When I get to the...

View Article


General Guides I wrote up for performing some basic LEM tasks

My company just purchased LEM.  While learning how to use use it and getting it set up, I had some initial trouble learning how to perform some tasks that may not be terribly basic, but also are not...

View Article

Is there a way to monitor CD rom drive usage?

Is there a way to monitor/notification of CD rom drive usage?    So far I can not figure out a way.  There are no services that I can think of to monitor.   Any ideas would be helpful.  Thank you.

View Article


Store and Retrieve Windows Event Logs

Our security posture requires that we store Windows Event Logs (Application, System and Security) for one year. I am still relatively new to LEM, so am not sure archiveconfig will meet this requirement...

View Article

Sourcefire Defense Center connector?

According to this FIREWALL LOG MANAGEMENT thread, I should be able to configure Sourcefire Defense Center to forward syslogs to LEM. However, I can't seem to locate a Sourcefire connector. Please tell...

View Article


suspicious DNS traffic rule

We have recently added checkpoint and the "suspicious DNS traffic" rule is triggering incidents. We have identified the DC as per the templates but are trying to decrease incidents.

View Article

Severity Levels: How are they determined?

Hey all, Does anyone know how the severity levels are determined?  We are trying to correlate the severity of Windows Events with the severity levels in LEM, so we can build a filter for just critical...

View Article

Print Services for Windows Monitoring

Hello:I was hoping someone could help me out in getting PrintService logs from our Windows 2008 R2 print server into LEM.  We are currently running LEM 6.1Here is what I have done so far:I enabled the...

View Article
Browsing all 5911 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>