Quantcast
Channel: THWACK: Popular Discussions - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5911 articles
Browse latest View live

How to use LEM to collect McAfee logs

Hi, so I'm coming into an environment with Orion and LEM.  I've got a decent grasp of Orion but not of LEM yet.  I'm being asked the following: I would like the following locations captured by the LEM...

View Article


MSSQL Auditor Process FileAuditFailure

Good morning; We have a machine running the MSSQL Auditor looking at multiple MS SQL servers.It is failing file audit failures about 8700 times per hour on D:\The process name: C:\Program Files...

View Article


Back up logs or LEM database, restore at a later point in time for searching.

I have a requirement where we need to restore old logs and search them for forensics. I wanted to import back into LEM or forward them back.  I see an export option, exportsyslog, in CMC but that...

View Article

LEM does not capture logs from RHEL agents

I have look through the troubleshoot guide and gathered information based on itOur RHEL servers are currently connected to the LEM as shown in the LEM console,have verified that no firewall is between...

View Article

Microsoft Exchange Logs Error

Dear Team, I have configured exchange server connector but unable to received message tracking logs. internal warning:Corrupt or manually edited file.  Skipping this line: ???#Software: Microsoft...

View Article


Template list for report and rules for LEM

Hi All, I have check through the success center and with the Solarwinds folks. Unfortunately they dont have a list compiling all the template report and template rules they have in the LEM. Anybody got...

View Article

Alert on login attempts of disabled accounts

I am pretty new to LEM (6.3.1) and am having some problems setting up a new rule.  I am trying to create a rule that will email me an alert when there is a login attempt of a disabled domain account....

View Article

LEM Report Manager fails ping test

Just installed the LEM reporting tool on a Windows server. LEM is running 6.1, Report Manager is 6.1. When I try and configure the manager info I get ping failed using the manager name or the IP. I can...

View Article


LEM Log Retention settings

Hi All, How can I check LEM log retention settings? I've already read some discussion about this and learned that LEM is configured to automatically purge the oldest logs, but how can I check if our...

View Article


How to monitor local user accounts

How is the best way to monitor for local user accounts being added, changed or deleted from Cisco IOS and Nexus switches? Thanks,Terry

View Article

Cisco ASA and syslog severity levels

What severity level is recommended for Cisco ASA? Thoughts? We are seeing dropped connection and this feels informational. Cisco ASA 5500 Series Configuration Guide using the CLI, 8.2 - Configuring...

View Article

Block IP Address on FortiGate's Firewall Failing

Hi everyone, I'm having an issue where I setup a rule to block an IP address using the Block Active Response on SW LEM: Using the Block IP Active Response - SolarWinds Worldwide, LLC. Help and Support...

View Article

LEM Web Console

HI I'm unable to login with web browser ... it says invalid login .... i've tried admin and password... its  not working  anyyy help ... bit of urgent ??? 

View Article


Can LEM connect to FireEye and download the event

I want to implement FireEye as IDS/IPS but I want to see the event in Solarwinds LEM

View Article

we have Model HW-004S PX MD Tech Enabler fireeye appliance ,whether can we...

we have Model HW-004S PX MD Tech Enabler fireeye appliance ,whether can we monitor this under solar winds with health and other metrics if please ,how to configure polling IP in to fireeye. Thanks

View Article


BARRACUDA Web Application Firewall High Traffic

Dear All, I have integrated web application firewall with soalrwinds LEM which is currently generating very high traffic,Did any one know if we can able to get filtered logs from Barracuda web firewall...

View Article

Blacklist & white list traffic on solar winds LEM agent

Dear All,  Can we modify configuration of solar winds lem agent to send only specific traffic and blacklist other traffic.i.e we will able to blacklist traffic based on specific keywords upon which LEM...

View Article


Location and Name of Local Agent Installer Log

All,  While attempting to install the Local Agent Installer on a Windows 8.1 machine, one of the screens displayed the following: “The installation of SolarWinds Log & Event Manager Agent is...

View Article

monitor AD group membership changes

All-I have a large number of active directory groups that need to be monitored. the groups in question all have a naming convention of "SG-servername_Support". I want to be able to have an notification...

View Article

vCenter Logging

How can I get vCenter logs into LEM?I am running vCenter version 5.0 on a Windows host.If you are running vCenter Server Appliance 5.0 this might help you( virtuallyGhetto: Forwarding vCenter Server...

View Article
Browsing all 5911 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>