Quantcast
Channel: THWACK: Popular Discussions - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5911 articles
Browse latest View live

Image may be NSFW.
Clik here to view.

Scan for new node running for hours

Hi there, Thanks for reading.  I'm seeing a node discovery is running for a few hours now.  It appears to be active but my network just isnt' that big!  I'm checking the CLI to see if messages from...

View Article


How do you setup AD Security Logs with LEM?

I'm trying to set up AD logs with LEM. I downloaded the Remote Solarwinds Log & Event Manager Agent. My concern is that with my company we have hundreds of Windows servers. Is it necessary to use...

View Article


Install LEM on a physical machine no HyperVisor

Currently we have LEM running in our vCenter on a vApp. Would it be possible to migrate just the SolarWinds LEM to a physical server on it's own without the use of a HyperVisor to maximize the...

View Article

Managing multiple LEM appliances

As we expand our number of LEM appliances I am finding I need a method for centralized management and I am curious what the best way to do this would be?  We are a solution provider that implements...

View Article

Cisco ASA and syslog severity levels

What severity level is recommended for Cisco ASA? Thoughts? We are seeing dropped connection and this feels informational. Cisco ASA 5500 Series Configuration Guide using the CLI, 8.2 - Configuring...

View Article


Wanted: LEM Consultant

Hi, I am looking for someone to provide some consultancy for LEM based in London EC3.

View Article

Software Installs not logging in Event Viewer

OS - Windows 7 Professional (x64bit) I am trying to find if there are ways to set so that when any software has been installed, it will get recorded in the event viewer. For example....I was trying to...

View Article

LEM Agent on CentOS

Hello Everyone, I have installed LEM agent on Syslog-ng server which is running on Cent-OS 7. Have following questions. 1. From which location within the syslog-ng server LEM will fetch the logs and...

View Article


Health Monitoring

Hello fellow thwackians. Does anyone know why at the beginning of every day that the Health monitoring of every port on switches basically refreshes? Just more curious than it is a problem.

View Article


Events Per Second?

What is the EPS capacity of a LEM appliance?  I have dug though the documentation but have not been able to find this information.

View Article

LEM Local User - Password Change

Is there a way for local LEM users with "Guest" or "Auditor" user role to change their password in LEM? Don't see anything in documentation as to how to do it, and testing it, the user with that role...

View Article

USB Defender - RW & Modify detection/action

Within LEM, is it possible to create a rule that will notify an email list when someone copies or modifies a PST or EXE file to or from a USB drive?

View Article

LEM does not capture logs from RHEL agents

I have look through the troubleshoot guide and gathered information based on itOur RHEL servers are currently connected to the LEM as shown in the LEM console,have verified that no firewall is between...

View Article


USB Defender

Needing help configuring USB Defender. I have followed all the steps to configuring it, but neither see an alert in the console nor are unauthorized USB devices shut down on the client machine. Here is...

View Article

USB Defender - File audit events not being received

Hi, We've finally got around to looking at implementing USB Defender but only require it in a file audit capacity. So we don't need whitelist or UDLP items, there's GPO in place and AD secgroups to...

View Article


Events Per Second?

What is the EPS capacity of a LEM appliance?  I have dug though the documentation but have not been able to find this information.

View Article

Configure LEM as a SYSLOG Server

Hi, I am currently configuring LEM to monitor a small industrial network, (containing 12 devices). Firstly can someone please confirm that LEM is capable of receiving SYSLOG data.If so, is this a...

View Article


USB Defender - RW & Modify detection/action

Within LEM, is it possible to create a rule that will notify an email list when someone copies or modifies a PST or EXE file to or from a USB drive?

View Article

LEM & Compatible Cisco IOS-XR Connectors

At the moment, i'm sending syslog messages to LEM from my ASR9010. via the folloiwng statment: logging 10.1.99.138 vrf Mgmt-Intf severity notifications port default Those who SSH into the router...

View Article

Monitoring Windows firewall rules in Windows Server 2008?

Is there a connector for collecting events related to Windows firewall rules changes in Windows Server 2008? The events produced in the Security log leave a lot to be desired. They indicate what rules...

View Article
Browsing all 5911 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>