Quantcast
Channel: THWACK: Popular Discussions - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5911 articles
Browse latest View live

Having problem to add Trend Micro Interscan Web Security to LEM

Hi all,Does anybody using LEM to proccess logs from Trent Micro Interscan Web Security?  I am having problem to monitor logs from TM Interscan,

View Article


CISCO ISE AND LEM

Hello experts, I have a customer wanting to configure his ISE 2.0 server to send syslog messages to his LEM. We tried different ways but we can't make it work.We configured ISE with the IP of LEM and...

View Article


Trying to disable an email alert

I'm fairly new to LEM so bare with me.  I turned on various email alerts as part of our implementation and as I find that they are not important I'm going back and turning some off.  However, one still...

View Article

Switching from old LEM to a new LEM for agents

We recently switched from one LEM to a new LEM. This was done to start over since the old LEM was barely usable. The new LEM has the same IP and host name the old one did. The old one has been changed...

View Article

LEM Report Manager fails ping test

Just installed the LEM reporting tool on a Windows server. LEM is running 6.1, Report Manager is 6.1. When I try and configure the manager info I get ping failed using the manager name or the IP. I can...

View Article


Log retention and disk space

I have LEM and need to meet the following requirements6 month retention for log filesMy current system just monitoring 34 servers and 8 firewalls has already chewed up this much space.Disk...

View Article

Windows Agent Spiking CPU Utilization to 100% on Windows 10

We recently upgraded all of our call center PC's from Windows 7 to Windows 10.  We immediately ran into issues where the LEM agent was maxing out CPU utilization causing the PC's to freeze up to the...

View Article

Alert Failures

So I have a rule which sends an email based on user logon failures above a certain threshold.  I'm running into an issue where the emails stop arriving though if i disable and re-enable the run it...

View Article


Configure LEM as a SYSLOG Server

Hi, I am currently configuring LEM to monitor a small industrial network, (containing 12 devices). Firstly can someone please confirm that LEM is capable of receiving SYSLOG data.If so, is this a...

View Article


LEM Database

Can you get access to the LEM database to do direct SQL queries?  Ever since upgrading to 5.7 from 5.4 (via 5.6), the reporting has been unusably slow (if it works at all, yes there is a call open but...

View Article

Set ACLS to members in adminsitration group

Being new to Solarwinds LEM, I am not sure how to resolve the following error message that we continuously receive:  set acls of members in administrators group. We have done a search on how to resolve...

View Article

LEM TLS and Certificate Architecture

Greetings,Where can I find detailed information regarding LEM's usage of a certificate agent based communication?I work in a WAN environment and we use WAN accelerators to aid with network traffic...

View Article

Threat Intelligence with LEM

How threat intelligence with LEM works for Syslog traffic received from Firewall/UTM?   Does it check IP reputation with external threat database or downloads and stores threat database locally on...

View Article


Configuring Cisco ASA Syslog to LEM

Hello all.   New Net Admin here looking to get syslog events logging in LEM.  So far, I have followed the configuration knowledge base: "Integrating Cisco PIX and Cisco ASA Firewalls with SolarWinds...

View Article

Block IP Address on FortiGate's Firewall Failing

Hi everyone, I'm having an issue where I setup a rule to block an IP address using the Block Active Response on SW LEM: Using the Block IP Active Response - SolarWinds Worldwide, LLC. Help and Support...

View Article


Netapp Clustered Data ONTAP CIFS auditing to LEM

NetApp Clustered Data ONTAP creates audit log files on a file share (as far as I can tell it is not able to send the log information via syslog or snmp etc). Does anyone know whether and if so how it...

View Article

Cluster Mode Netapp File Auditing

I cannot seem to get LEM to read the .evtx file that Netapp is generating.This postNetapp Clustered Data ONTAP CIFS auditing to LEM has been answered but in the same post at a later date is this...

View Article


Image may be NSFW.
Clik here to view.

WannaCry Alert

Has anyone created a WannaCry LEM alert. This threat might have subsided due to the Kill switch but I am thinking others are coming.  Based on a few blog posts I have read I created a rule that looks...

View Article

New version of the NERC CIP standards

New versions of the NERC CIP requirements will come into effect on Apr 1, 2016, and I am looking for some guidance on using LEM to satisfy the following requirement: Develop a baseline configuration,...

View Article

thwackCamp videos are live! Sessions on LEM and Security

(original post)Hey everyone! In case you've missed the announcements or mostly stuck just to your areas of interest on Thwack, here's a reminder about THWACKcamp 2015 this week. For LEM customers and...

View Article
Browsing all 5911 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>