Quantcast
Channel: THWACK: Popular Discussions - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5911 articles
Browse latest View live

Question on Rules Creation & Notification Timing

One of my clients requested a rule to alert if anyone starts scanning on a particular TCP port from the outside. They collect logs from a number of perimeter devices and asked for a threshhold of 10...

View Article


LEM Upgrade?

Hi All, Some confusion here which Im hoping you guys will be able to help me out with. Within the last month I received an email from Solarwinds advising me of an upgrade to them LEM which included...

View Article


Need LEM agent UNinstaller

Where can I get the manual uninstaller for the LEM agent? It does no good to tell me to get it from the customer portal because I was just evaluating the software. Would be nice if you would make the...

View Article

How to monitor activity by users of the admin group

can someone tell me how to create a rule in LEM to show activity by the administrator user or users in the admin group.  Or is there perhaps a report in the  SW LEM reports module? thank you......Rick

View Article

failed logon every 15 minutes

I receive a failed logon every 15 minutes from the same user account. This user is out of site and it does not seem like an interactive logon. Any ideas?

View Article


Upgrade from 6.4 to 6.5

Hi alli want to upgrade my lem appliance (virtual, hyper-v) from 6.4 to 6.5 i've already downloaded the related Upgrade package from customer portal but in each file (SolarWinds-LEM-v6.5.0-Upgrade.iso...

View Article

Can LEM accept RSYSLOG?

My Firewall is sending logs to rsyslog server which forwards the syslogs to LEM. Problem here is, in Rsyslog we have enabled OMUDPSPOOF module in order to change the source IP of the node which...

View Article

How to enter new license key?

Hey all,  I recently took on a new position, and at some point they had LEM set up and running.  I would like to get it updated and back up to a manageable status.  At this point, we are on version...

View Article


Does LEM work with Panda Cloud Antivirus (Paid Version) and Informix DB 6.1

Hi all, I am wondering if anyone with more extensive experience with LEM have managed to or knows how to get LEM to work with Panda Cloud Antivirus and Informix DB 6.1. Any response is very much...

View Article


EventLog Forwarder

Apologies if this isn't the correct spot for this. Installed the EventLog Forwarder product (the free one), and attempting a subscript but the one event log isn't listed as an available option, please...

View Article

TriGeo Alert - Disk nearly full

I started receiving these LEM email alerts and I am not sure if it is saying my LEM c: drive and what I need to do.  This is the message: disk c: nearly full at 2016-05-11 10:07:00.0 There is no other...

View Article

LEM v6.3.1 HOT FIX 4 IS NOW AVAILABLE

DownloadAvailable:http://downloads.solarwinds.com/solarwinds/Release/HotFix/SolarWinds-LEM-v6.3.1-Hotfix4.zip Hotfix 4...

View Article

How to collect log information from TM Officescan

I found a KB talking about how LEM collects TM Officescan log information. Set up Officescan syslog messages with LEM - SolarWinds Worldwide, LLC. Help and Support However, Officescan Server 11 doesn't...

View Article


User Defined Groups - How to Bulk Import

When I am creating a user defined group in LEM is there a good way to build import items?  I often have list of several items I need to add and I end up adding them all one at a time.  Is there a...

View Article

White-list application/processes using LEM?

Hi, has anyone used LEM to create and apply an application white-list or one for processes? I have been tasked to leverage LEM to block any unknown processes from running on all of our desktop PC’s....

View Article


LEM Upgrade Time Required

Is there any way to estimate the amount of time a LEM upgrade on a standalone appliance will take? Specifically we're going to upgrade from 6.3.1HF7 to 6.4. I'd like to give my support teams some...

View Article

Reports

Hello, is it possible to run a report in solarWinds ? let say I have a backup server with ip address x.x.x.x that pulls data from about 10 servers in different Geo location b/w 8 am and 5 pm.The task...

View Article


New vCenter connector not for VCSA ?

Hi, there is a new vCenter connector available for LEM, but only as an Agent Node connector, not an Appliance connector.  Was this only meant for vCenter installations running on Windows Server ?  If...

View Article

Using nDepth to monitor GPO changes

Hi, Im learning how to use LEM and monitor our Infrastructure, im trying to monitor GPO changes so I can set up alerts. I have enabled the audits for GPO (screenshot attached). However in LEM, it shows...

View Article

Monitoring filters

Hi, I am trying to configure 2 monitoring filters:1 for changes just to GPO1 for users being added to to Domain Admin security groups. I figured out how to monitor GPO however eventID 5136 also logs...

View Article
Browsing all 5911 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>