Quantcast
Channel: THWACK: Popular Discussions - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5911 articles
Browse latest View live

LEM agent question

Does the spop.conf query its info directly from a file on the LEM box?  For some reason when installing the agent on a brand new machine the spop.conf is populating with the old appliance IP address....

View Article


Security patches for LEM

Hi, I am new to LEM .  We use it for PCI DSS Compliance, which requires to install security patches etc. periodically. Hence I am curious to know that if we need to update the base operation system of...

View Article


Forward http to https

Hi LEM is running on 8443 ( over https) but also on 8080 (over http). For obvious security reasons, we need to stop/forward traffic from http to https.  Is there any advise how to do it?

View Article

Checkpoint connector for r75.40 SPLAT

Hi guru, Please help me to get Checkpoint r75.40 SPLAT log into LEMI tried OPSEC/Check Point NG LEA Client but it fails to startMany thanks

View Article

Supported IDS/IPS Sensors/Apps

I'm looking for a list of supported IDS/IPS sensors and related applications (Snort for example), that the LEM supports? A future project is to replace our EOL IDS sensors with new technology and I...

View Article


Is IIS 8 supported yet? If not, is there a way to make it work?

I've already tried using the IIS 7 connector, but it doesn't seem to want to start due to an error.

View Article

Publish searches to users?

Is it possible to publish custom saved searches from nDepth to multiple users without the need for manual input or recreating them for each user that logs in?

View Article

Is there any connector for Clearswift MIMEsweeper ?

Hi, We have a MIMEsweeper appliance that can send syslog/traps. I do not have find yet any Connector for this device. Is there anyone having this device and being able to find a connector for it ?Is it...

View Article


Forward http to https

Hi LEM is running on 8443 ( over https) but also on 8080 (over http). For obvious security reasons, we need to stop/forward traffic from http to https.  Is there any advise how to do it?

View Article


LEM Filters & Alerts Technical Reference

Hey All, I wanted to make you aware of a new document we've posted up on the docs page titled "Using SolarWinds Log & Event Manager (LEM) Filters & Alerts". This document is focused on...

View Article

Collect events from Novell eDirectory on SuSE

We are very new to LEM and are needing to collect events from our Novell eDirectory running on SuSE.  Does anyone know how to do that?  I have done a quick search for KB and not found anything.  I...

View Article

Top 6 SANS Essential Categories of Log Reports 2013 in LEM

SANS released an updated list of their critical log categories recently. Some good recommendations especially if you're new to log management. The 6 Categories of Critical Log Information How easily...

View Article

LEM -- add new node

Hello, I have installed LEM v 5.7.0 for testing.   As a first step, I am trying to add a new node (Cisco router) but it's failing. I have configured the router to send syslog and I can see the packets...

View Article


LEM doesnt find my node (cisco router) i can send syslog messages to my PC...

I want to configure my router to send ccsip messages and ccapi inout messages to log and event view but the server doesn't find the router sending the events....is this sort of logging not supported,...

View Article

Trouble with snmp trap variable bindings truncating in Orion trap viewer and...

Trouble with snmp trap variable bindings truncating in Orion trap viewer and trap rule alert action output.  We have several trap rules which are working successful and not truncating.For some reason...

View Article


Connector for Microsoft Threat Management Gateway Will Not Turn On

Environment: I have an LEM, build 5.5.0I have three Microsoft Forefront Threat Management Gateway servers, all version 7.0.9193.500 (which is version 2010; Service Pack 2; no rollups)I have LEM agents...

View Article

LEM's restrictconsole and restrictreports command has no effect

LEM's restrictconsole and restrictreports command has no effect.For example, I settings restrictconsole only allow 192.168.1.1,But the 192.168.1.2 is still can login to LEM console, What steps do I...

View Article


Volume of syslog/SNMP traps,LEM can handle per hour ??

Hello ,, Kiwi syslog can handle 2 millions syslog message an hour(without any rules) so does any limitation has been marked for LEM ?

View Article

LEM LDAP Authentication logs

Hi, We use AD (2012) to get authentication for Radius (VPN), web applications as well as Ubuntu machines also use AD (via Centrify) to login.  My question is :  how to get login//authentication logs of...

View Article

Console node profile filter selection

On the console node screen add the ability to filter the nodes based on a Profile that is blank.

View Article
Browsing all 5911 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>