Scan for new node running for hours
Hi there, Thanks for reading. I'm seeing a node discovery is running for a few hours now. It appears to be active but my network just isnt' that big! I'm checking the CLI to see if messages from...
View ArticleHow do you setup AD Security Logs with LEM?
I'm trying to set up AD logs with LEM. I downloaded the Remote Solarwinds Log & Event Manager Agent. My concern is that with my company we have hundreds of Windows servers. Is it necessary to use...
View ArticleInstall LEM on a physical machine no HyperVisor
Currently we have LEM running in our vCenter on a vApp. Would it be possible to migrate just the SolarWinds LEM to a physical server on it's own without the use of a HyperVisor to maximize the...
View ArticleManaging multiple LEM appliances
As we expand our number of LEM appliances I am finding I need a method for centralized management and I am curious what the best way to do this would be? We are a solution provider that implements...
View ArticleCisco ASA and syslog severity levels
What severity level is recommended for Cisco ASA? Thoughts? We are seeing dropped connection and this feels informational. Cisco ASA 5500 Series Configuration Guide using the CLI, 8.2 - Configuring...
View ArticleWanted: LEM Consultant
Hi, I am looking for someone to provide some consultancy for LEM based in London EC3.
View ArticleSoftware Installs not logging in Event Viewer
OS - Windows 7 Professional (x64bit) I am trying to find if there are ways to set so that when any software has been installed, it will get recorded in the event viewer. For example....I was trying to...
View ArticleLEM Agent on CentOS
Hello Everyone, I have installed LEM agent on Syslog-ng server which is running on Cent-OS 7. Have following questions. 1. From which location within the syslog-ng server LEM will fetch the logs and...
View ArticleHealth Monitoring
Hello fellow thwackians. Does anyone know why at the beginning of every day that the Health monitoring of every port on switches basically refreshes? Just more curious than it is a problem.
View ArticleEvents Per Second?
What is the EPS capacity of a LEM appliance? I have dug though the documentation but have not been able to find this information.
View ArticleLEM Local User - Password Change
Is there a way for local LEM users with "Guest" or "Auditor" user role to change their password in LEM? Don't see anything in documentation as to how to do it, and testing it, the user with that role...
View ArticleUSB Defender - RW & Modify detection/action
Within LEM, is it possible to create a rule that will notify an email list when someone copies or modifies a PST or EXE file to or from a USB drive?
View ArticleLEM does not capture logs from RHEL agents
I have look through the troubleshoot guide and gathered information based on itOur RHEL servers are currently connected to the LEM as shown in the LEM console,have verified that no firewall is between...
View ArticleUSB Defender
Needing help configuring USB Defender. I have followed all the steps to configuring it, but neither see an alert in the console nor are unauthorized USB devices shut down on the client machine. Here is...
View ArticleUSB Defender - File audit events not being received
Hi, We've finally got around to looking at implementing USB Defender but only require it in a file audit capacity. So we don't need whitelist or UDLP items, there's GPO in place and AD secgroups to...
View ArticleEvents Per Second?
What is the EPS capacity of a LEM appliance? I have dug though the documentation but have not been able to find this information.
View ArticleConfigure LEM as a SYSLOG Server
Hi, I am currently configuring LEM to monitor a small industrial network, (containing 12 devices). Firstly can someone please confirm that LEM is capable of receiving SYSLOG data.If so, is this a...
View ArticleUSB Defender - RW & Modify detection/action
Within LEM, is it possible to create a rule that will notify an email list when someone copies or modifies a PST or EXE file to or from a USB drive?
View ArticleLEM & Compatible Cisco IOS-XR Connectors
At the moment, i'm sending syslog messages to LEM from my ASR9010. via the folloiwng statment: logging 10.1.99.138 vrf Mgmt-Intf severity notifications port default Those who SSH into the router...
View ArticleMonitoring Windows firewall rules in Windows Server 2008?
Is there a connector for collecting events related to Windows firewall rules changes in Windows Server 2008? The events produced in the Security log leave a lot to be desired. They indicate what rules...
View Article