Quantcast
Channel: THWACK: Popular Discussions - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5911 articles
Browse latest View live

How To Create LEM Reports in Reporting Tool?

I am new to LEM and am curious if it's possible to create your own reports in the reporting applicaiton that comes with LEM and if so, how? Thanks in advance for any help with this.

View Article


Rule to monitor and alert on a specific Public IP address

All,   I'm need to create a rule to monitor for and alert on traffic from a specific IP address to our firewalls.  I have a filter in the Monitor section of LEM but I can't create email alerts on...

View Article


Question about HPE support.

Hello all.I'm a new user. I want to ask if the software (LEM) supports products:HPE FlexNetwork 5130 EI Switch SeriesHPE OfficeConnect 1950 Switch SeriesHPE OfficeConnect 1920 Switch SeriesFortinet...

View Article

Supported Hyper-V for LEM

Good day. Would like to confirm if we can install LEM on HyperV but running on Windows Server 2016 Standard.  It was written in LEM datasheet that supported OS are as follows:Microsoft Hyper-V Server...

View Article

Auditing Group Policy Changes

Hi, Can anyone tell me how to set up a rule to track group policy changes?  This is for tracking admin users who modify the Group Policy Object(I am not talking about creating a new one or renaming an...

View Article


How do I configure the SNMP community string for LEM?

I haven't been able to find the setting whereby I can configure the SNMP read-only community string for the LEM appliance, so that I can monitor its health/set up alerting etc through Solarwinds NPM. I...

View Article

Sophos UTM SG230 and the Astaro connector

We are trying to evaluate Solarwinds LEM. One device we have added is a Sophos UTM SG230. The LEM is using the Astaro connector, but I only ever see MailTrafficAudit events. The UTM is configured to...

View Article

Email Alerting stopped

Hello, My email alerting stopped for my rules.  I checked the diskusage and the EPIC rules queue is backed up.  How do clear this? cmc::acm# diskusageChecking Disk Usage (this could take a moment)......

View Article


User logon without Kerberos

Preemptive Happy 4th Thwakers, I have another question.  I am trying to capture logons, however I do not want to capture the Kerberos ticket exchanges.  I tried "does not equal" Kerberos in the Logon...

View Article


How LEM manages logs with different time zone or no time zone

There would be a case where appliances being managed are in different countries and in different time zones and LEM is in different time zone. Product like fortigate doesnt give time zone information...

View Article

nDepth Searches very slow and time out

I am having consistent problems with slow nDepth searches that often timeout on one of my LEM appliances.  I have called SW Support and thus far they haven't been able to find anything wrong with my...

View Article

Block IP Address on FortiGate's Firewall Failing

Hi everyone, I'm having an issue where I setup a rule to block an IP address using the Block Active Response on SW LEM: Using the Block IP Active Response - SolarWinds Worldwide, LLC. Help and Support...

View Article

Alert on login attempts of disabled accounts

I am pretty new to LEM (6.3.1) and am having some problems setting up a new rule.  I am trying to create a rule that will email me an alert when there is a login attempt of a disabled domain account....

View Article


Remembering passwords with 6.3.1

Has anyone come across the issue that LEM will no longer remember local user's password after upgrading to 6.3.1? We dont use the SSO function and have a set of service accounts that are used for...

View Article

import Solarwind LEM Logs

Hi, I have restored some old LEM logs from tape drive, is there a way I can import them in the current LEM (6.0), if not can I read the logs from any other applications. ThanksSandeep

View Article


Is there a list of LEM Best Practices, or Most Common Rules?

I tried searching for Best Practices, but only found a few documents.  Is there a site for LEM Best Practices, common rules, or implementation suggestions?  What do you feel is your best rule?  Thanks...

View Article

Image may be NSFW.
Clik here to view.

Login failed LEM reports

i am trying to get all log messages from the LEM reports. I installed the Reports and Crystal runtime file on my computer which was not a big issue. But everytime i try to add a manager i can"t ping...

View Article


Are the backups configured in the LEM CMC stored as compressed data?

I have recently setup our first of three different LEM's and want to setup the syslog backups via the CMC.  We have a requirement to store syslog data for 100 days. Since the LEM server has a limited...

View Article

Configure LEM as a SYSLOG Server

Hi, I am currently configuring LEM to monitor a small industrial network, (containing 12 devices). Firstly can someone please confirm that LEM is capable of receiving SYSLOG data.If so, is this a...

View Article

Configuring Cisco ASA Syslog to LEM

Hello all.   New Net Admin here looking to get syslog events logging in LEM.  So far, I have followed the configuration knowledge base: "Integrating Cisco PIX and Cisco ASA Firewalls with SolarWinds...

View Article
Browsing all 5911 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>