Quantcast
Channel: THWACK: Popular Discussions - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5911 articles
Browse latest View live

SQL Server and/or SQL DB log best practices

Good day everyone, needing a little more help with SQL best logging practices. I have found the Audit Policies and Best Practices for LEM document. I have gone over it a few times.I have search for...

View Article


LEM 5.3 and 5.3.1 Removal From SCCM

So kind of an obtuse random scenario that I am hoping to get some help with.  So my organization has decided to move away from LEM and has asked me to evaluate what if any versions are still on the...

View Article


Image may be NSFW.
Clik here to view.

LEM DB Backup Files - Retention Question

My LEM produces a DB backup file of approximately 1GB daily. Do I need to retain all of these to insure I have data in the event that I get a request for information from any date in the past? 

View Article

USB Defender

Needing help configuring USB Defender. I have followed all the steps to configuring it, but neither see an alert in the console nor are unauthorized USB devices shut down on the client machine. Here is...

View Article

Run PowerShell or Command from Rule Action

In Build > Rules, I know there are a lot of built-in Actions to choose from, but I was wondering if it is possible to call/run either a Windows CMD command or (ideally) a PowerShell script?

View Article


Cisco ASA and syslog severity levels

What severity level is recommended for Cisco ASA? Thoughts? We are seeing dropped connection and this feels informational. Cisco ASA 5500 Series Configuration Guide using the CLI, 8.2 - Configuring...

View Article

Changing the name of a LEM node

I just added my first node in LEM (a Cisco switch) and trying to figure out how to change the name of the node from the IP address to a friendly name? Dan

View Article

LEM on AWS

How can I host LEM on AWS?

View Article


Possible to monitor disk space remaining?

I'm currently using EventSentry to alert me if drives on Windows 2008/2012 virtual machines are running below 5% available space. Can I use LEM to replace EventSentry?

View Article


Requirements are vague!

Hello! Pretty much in at the deep end and need some help;The system has been.. left alone for a while and I've never touched a LEM so please ELI5! I have 4-6 LEM managers (Which I know where the...

View Article

Connecting SolarWinds to Cisco FirePOWER using eStreamer

We have a Cisco FirePOWER unit that we want to poll information from and place in a dashboard so that it is easy to see what is going on with FirePOWER. I have been looking and haven't found too much...

View Article

We have a requirement to audit all Applocker EXE and DLL events on all of our...

We have a requirement to audit all Applocker EXE and DLL events on all of our servers; how do I set up LEM to make this information available and prominent? We have our Group Policy configured to audit...

View Article

How can i stop nodes

Syslog nodes are added automatically but do not need it all.if i remove a node it is added again.how can I stop nodes from being automatically added

View Article


LEM Response is very slow

I have LEM 6.3.1. The size of the disk reaches 300+ GB. Now I have a weird response. It takes about 30 minutes to log through the web application. I have to restart the LEM Manager so as to log the web...

View Article

LEM Agents Remote Deployment

Hi there,  I am trying to install LEM agents remotely on Windows machines using Windows remote agent installer. The machines I am trying to install agents on were not found automatically by the agent...

View Article


Image may be NSFW.
Clik here to view.

Login failed LEM reports

i am trying to get all log messages from the LEM reports. I installed the Reports and Crystal runtime file on my computer which was not a big issue. But everytime i try to add a manager i can"t ping...

View Article

Success Stories of gaining operational value from LEM

I would really love to hear specific success stores of where people have gained operational value from LEM.  I am hoping that by sharing some stories or examples we might all be able to gain new...

View Article


LEM 6.3.1 Hotfix 7 Now Available

DownloadAvailable:LEM v6.3.1 Hotfix 7 Hotfix 7 addressesthefollowingissues:Windows Workstations appearing as Universal NodesCheckpoint R80.10 unable to transmit logs to LEM due to upgraded cryptography...

View Article

Error with Reports Manager

Ok, I've been bashing my head on this problem for a few days now and I'm calling in for reinforcements! Just joined a new organization using LEM, and I'm happily learning all it can do. However I...

View Article

Install Main LEM on a stand alone server?

I will soon be installing LEM at my customer site. Previously I did a compare between Splunk, LEM and Oracle Vault. I installed all three products and ran them in our test environment. I picked LEM...

View Article
Browsing all 5911 articles
Browse latest View live