Quantcast
Channel: THWACK: Popular Discussions - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5911 articles
Browse latest View live

LEM Filters & Alerts Technical Reference

Hey All, I wanted to make you aware of a new document we've posted up on the docs page titled "Using SolarWinds Log & Event Manager (LEM) Filters & Alerts". This document is focused on...

View Article


Forward an SNMP trap from Solarwinds Orion

Hey guys, I have been using the Solardwinds suite for the last 4 days and so far so good it is a great product. I just have a quick question regarding the alerts configurations.  I want that based on...

View Article


Using a Thread Intelligence Feed with LEM?

I am curious if anybody out there is using LEM in conjunction with a Threat Intelligence feed?  I realize that LEM doesn't currently accept any of the feed protocols; however, I have seen that some...

View Article

Firewall Log Management

Hi, Can you please advise if it is possible to collect the logs from Checkpoint firewalls running on Splat or Nokia platforms and pass them to LEM so they can be viewed without the need to log onto the...

View Article

LEM Report/Alert for Cisco ASA VPN Usage

We would like to create a report for VPN logins/logouts and also have a real time alert for when someone is logged in or out.  The device is a Cisco ASA.  Any help on whether this is possible or not...

View Article


Emailing nDepth Report Through PDF File Format

Inside LEM verison 6.0, when generating nDepth queries, I can export the results in PDF format. However, when emailing, there is only one option of sending it via a .csv file. I was told by LEM support...

View Article

Restricting Nodes from obtaining a LEM license

Other than removing the command lines from a router/switch/firewall, is there any other way a LEM Administrator can restrict nodes from obtaining a license?  I understand from the console, an...

View Article

LEM keeps freezing

Hi all, Pretty noob to LEM.... Our LEM seems to freeze every now and then....Is there a way of setting up a cron job to either re-start the manager service or reboot the appliance nightly or every...

View Article


Trouble creating a rule to block access to a process

I've created a LEM rule to block access to mspaint.exe from a specific computer and pop up a message with a reason, unfortunately my rule seems to do absolutely nothing. I've attached a screenshot of...

View Article


Collecting Logs for DHCP Server Configuration Changes

Hey all,I'm setting up Log & Event Manager for the first time and I can't seem to figure out how to properly collect the logs I want from a windows DHCP server. I want to be able to collect the...

View Article

Integration of LEM with Orion NPM

To quote the "What are we working on now" thread for LEM from 2011:  "SolarWinds Orion Platform Product Integration: Escalating Events from LEM to Orion via SNMP TrapsSince we're in the business of...

View Article

Image may be NSFW.
Clik here to view.

nDepth histogram x-axis timezone incorrect

Hi Geeks, The timezone in x-axis is incorrect.When mouse-over the bar, the time is correct indeedWould you tell me how to fix it?Below is my screenshotThanks

View Article

Custom Windows Event Log monitoring

Hi All, I'm sure I've missed something fundamentally obvious, but I can't seem to track it down either via documentation, Thwack searches, or just poking around in the UI. Our developers use custom...

View Article


I can not get my SWLEMReports.exe to run.

When I try to run my Reports 6.0 I get error msg: "The Crystal Reports run-time engine is missing" and  sometimes, "cslibu-2-0-0.dll missing".   Uninstalled, Re-ran ReportsAndCrystal.exe, deleted dir,...

View Article

file audit nt authority

Greetings, I just rolled out SLEM 6.0 (and updated the agents) and turned on the new FIM feature.  In theory this is an awesome thing to have, but it's proving to be useless to me at the moment. Every...

View Article


Is it possible to have the detection time reflect the local time of the node?

I have several nodes located in various timezones.  Currently all events reflect the local time of my appliance.  Is it possible to configure the LEM settings such that the DetectionTime of an event...

View Article

Email Notifications How-To

Hey All,Since we haven't had any LEM discussions yet, I thought I'd post a quick how-to on setting up custom notifications. There's a couple of really common use cases for going beyond the out of the...

View Article


Filtering Certain Windows Security Events Before the LEM Agent Sends to the...

Hi all, We currently have monitoring processes that logon to our servers continuously to monitor the overall health of the server.  This turns into thousands of unnecessary events flowing into LEM.  Is...

View Article

Managing multiple LEM appliances

As we expand our number of LEM appliances I am finding I need a method for centralized management and I am curious what the best way to do this would be?  We are a solution provider that implements...

View Article

Network Events Widget - What is it looking for?

Can someone tell me what the Network Events Widget is supposed to be looking for? What activity kicks it off? I would love for LEM to sniff traffic or even show any network activity that takes place...

View Article
Browsing all 5911 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>