Quantcast
Channel: THWACK: Popular Discussions - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5911 articles
Browse latest View live

LEM newbie questions about upgrade from 6.1 to 6.3.1 HF6

Hi everyone...Solar-n00b here, and I am new to this forum (and to LEM in general). I've recently joined the team at work, and they've placed me on a task to assist in upgrading their current LEM from...

View Article


How to control email alert in rules serviceWarning.EventInfo = Disk

I have setup a rules serviceWarning.EventInfo = Disk, I only want to receive an email when the alert is first triggered, and then 24 hr to remind me.   The event is triggering every 5 seconds,   What...

View Article


Is it possible to import Windows Security Event log into LEM from a node...

OK, so here's the scenario.  Due to internal company policy I cannot install native LEM agent on our Domain Controller (Windows 2012).  So that means I cannot just add this node to LEM console and...

View Article

Question concerning auto-discovery of new Nodes.

Hello all I am curious if anyone else if experiencing what I am after the LEM 5.5 upgrade. The auto-node discovery system is detecting that PC's in my environment are sending logs directly to my LEM...

View Article

Top 6 SANS Essential Categories of Log Reports 2013 in LEM

SANS released an updated list of their critical log categories recently. Some good recommendations especially if you're new to log management. The 6 Categories of Critical Log Information How easily...

View Article


LEM Database

Can you get access to the LEM database to do direct SQL queries?  Ever since upgrading to 5.7 from 5.4 (via 5.6), the reporting has been unusably slow (if it works at all, yes there is a call open but...

View Article

LEM nodes don't delete

Recently updated our LEM to 6.2.1.We are seeing nodes that have been retired, but still on the network. We delete them butthey magically return. Anyone know how to fix this behavior? Thanks,Ken T.

View Article

monitor AD group membership changes

All-I have a large number of active directory groups that need to be monitored. the groups in question all have a naming convention of "SG-servername_Support". I want to be able to have an notification...

View Article


IIS 7.5 W3C Log Collection

I'm having trouble collecting W3C logs from a server running IIS 7.5 (using Lem 5.5 with all the latest updates). The FAST reader starts, but I never collects any actual logs. If I look on the server...

View Article


Syslog node names?

I have a number of syslog devices pointed at LEM, but they all show up as IP addresses for node name. Is there a way to change the name of these nodes? Thanks!

View Article

Can't connect to AD using Directory Service Query Tool

Hi all, Not sure what I'm missing here, but for the life of me I can't get LEM to connect to AD using the Directory Service Query Tool! The config needed seems to be simple enough, and I've read...

View Article

Change sender E-Mail from Alerting Mails

All, wondering how to change the sender E-Mail from (SolarWinds <noreply@solarwinds.com>) to something usable in the organization.Also it would be really helpful to change the Subject Title from...

View Article

Is there a way to monitor CD rom drive usage?

Is there a way to monitor/notification of CD rom drive usage?    So far I can not figure out a way.  There are no services that I can think of to monitor.   Any ideas would be helpful.  Thank you.

View Article


Palo Alto config with LEM

Hi All, I'm new to both LEM and PA so looking to make sure I have the correct setup.  I've read the KB article SolarWinds Knowledge Base :: Integrating your Palo Alto Firewall with SolarWinds LEM and...

View Article

Palo Alto Firewall + LEM = Random Nodes?

We put in a Palo Alto firewall and set up syslog to report to the firewall. Since doing so, I am getting random 13 digit "nodes" reporting in too. I cannot find any actual information being reported...

View Article


LEM filter

Hi,  I am trying to set a filter to alert me for a specific windows security event. I have set up the rules, but I am not getting any alerts. Am I setting the filter the correct way ?   The screenshot...

View Article

Solarwinds LEM

We recently just deployed LEM into our environment and I am having issues with setting up a rule/filter. I am unsure if this should be a rule initially before filtering or vise versa. Nevertheless, I...

View Article


Crystal Reports with LEM Database

Install full version of Crystal Reports and I am unable to connect to the LEM Oracle Database to customize reports. This seems like something that someone has successfully done. Unsuccessful attempts...

View Article

LEM - Ghost Nodes.

Hello, I have a problem what I haven't can solved, in LEM appears several nodes like this: (Imagen LEM.PNG)149192060000014919206040001491920581000... All nodes differents except for the seventh  number...

View Article

Is It Possible To Forward RAW Logs & Events That LEM Collects To Other 3rd...

Hi All, Is it possible to somehow forward all logs and alerts that LEM collect to other 3rd party collector. We are considering to roll out Dell SecureWorks in our environment and they would need an...

View Article
Browsing all 5911 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>