Quantcast
Channel: THWACK: Popular Discussions - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5911 articles
Browse latest View live

LEM - Oracle 12c Audit

Hi,Is it possible to monitor audit of Oracle 12c Database? I tried with connector for "Oracle Auditor - Database" with no luck.I found some documentation that say that LEM support Oracle 9-10 and 11...

View Article


Finding CAC vs Username Password Authentication

Quick question: How do I find when someone uses username-password instead of using CAC authentication while logging on? Thanks Steve

View Article


LEM - search performance

We have LEM hosted on a fairly fast SAN, but I find nDepth searches often take longer than the max 20min timeout window. Can anyone share their experience with LEM? There's about one more year left on...

View Article

Image may be NSFW.
Clik here to view.

InternalNewToolData

I am getting 100,000 of the messages for a CAT 6880 The syslogs are going to the default facility of 7 and I have the both the CISCO PIX / IOS connector and CISCO NXOS connectors on and pointed to...

View Article

Image may be NSFW.
Clik here to view.

Unable to Login for Initial Setup

I've recently installed the LEM product on a Hyper-V host running Windows Server 2016.  After importing the VM, connecting it to a network, and launching it, I'm now at the initial login page.  "Admin"...

View Article


Possible to monitor disk space remaining?

I'm currently using EventSentry to alert me if drives on Windows 2008/2012 virtual machines are running below 5% available space. Can I use LEM to replace EventSentry?

View Article

LEM on AWS

How can I host LEM on AWS?

View Article

Need LEM agent UNinstaller

Where can I get the manual uninstaller for the LEM agent? It does no good to tell me to get it from the customer portal because I was just evaluating the software. Would be nice if you would make the...

View Article


LEM V6.3.1 HOTFIX 6 IS NOW AVAILABLE

DownloadAvailable:LEM v6.3.1 Hotfix 6 Hotfix 6 addressesthefollowingissues:Expired certificate for connector updates causing Automatic Connector Updates to fail. Hotfix 6 needs to be applied to restore...

View Article


Using a Threat Intelligence Feed with LEM?

I am curious if anybody out there is using LEM in conjunction with a Threat Intelligence feed?  I realize that LEM doesn't currently accept any of the feed protocols; however, I have seen that some...

View Article

LEM - Oracle 12c Audit

Hi,Is it possible to monitor audit of Oracle 12c Database? I tried with connector for "Oracle Auditor - Database" with no luck.I found some documentation that say that LEM support Oracle 9-10 and 11...

View Article

How to monitor activity by users of the admin group

can someone tell me how to create a rule in LEM to show activity by the administrator user or users in the admin group.  Or is there perhaps a report in the  SW LEM reports module? thank you......Rick

View Article

Is there a list of LEM Best Practices, or Most Common Rules?

I tried searching for Best Practices, but only found a few documents.  Is there a site for LEM Best Practices, common rules, or implementation suggestions?  What do you feel is your best rule?  Thanks...

View Article


Image may be NSFW.
Clik here to view.

Configuring SSO for LEM

I am attempting to configure AD integration for LEM (6.3.1) and for the life of me, I cannot get it to function correctly.  I contacted tech support and they sent me this article.  When I get to the...

View Article

Configure LEM as a SYSLOG Server

Hi, I am currently configuring LEM to monitor a small industrial network, (containing 12 devices). Firstly can someone please confirm that LEM is capable of receiving SYSLOG data.If so, is this a...

View Article


Reports Manager pulling inforamtion from AD

I am trying to get AD reports such as account logins, disables and lockouts, but all these reports show zero occurrences. I am able to pull basic reports Internal Audit reports successfully. I have...

View Article

Is it possible to import Windows Security Event log into LEM from a node...

OK, so here's the scenario.  Due to internal company policy I cannot install native LEM agent on our Domain Controller (Windows 2012).  So that means I cannot just add this node to LEM console and...

View Article


Connecting SolarWinds to Cisco FirePOWER using eStreamer

We have a Cisco FirePOWER unit that we want to poll information from and place in a dashboard so that it is easy to see what is going on with FirePOWER. I have been looking and haven't found too much...

View Article

Tutorial for setting up events/rules in LEM?

Hi everyone...I recently took the "Into to LEM" class a couple weeks ago and in it there was time given (over an hour) introducing to setting up rules & events, and some of the precautions when...

View Article

Configuring Cisco ASA Syslog to LEM

Hello all.   New Net Admin here looking to get syslog events logging in LEM.  So far, I have followed the configuration knowledge base: "Integrating Cisco PIX and Cisco ASA Firewalls with SolarWinds...

View Article
Browsing all 5911 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>