Quantcast
Channel: THWACK: Popular Discussions - Security Event Manager (SEM) - Formerly Log & Event Manager
Browsing all 5911 articles
Browse latest View live

Distributed architecture?

Does LEM support any form of distributed architecture that would allow you to have collectors at different locations and/or networks where the data is then rolled up into a single interface for...

View Article


RECOMMEND LEM ON SPREAD THE WORD FOR A $25 AMAZON GIFT CARD!

Let the community know how impressed you are with LEM and earn a $25 Amazon gift card!  Simply post your review in Spread The Word with the questions answered below:       What was life like before...

View Article


Filtering Certain Windows Security Events Before the LEM Agent Sends to the...

Hi all, We currently have monitoring processes that logon to our servers continuously to monitor the overall health of the server.  This turns into thousands of unnecessary events flowing into LEM.  Is...

View Article

User Privileges

What's the difference between the "Modify" and "Audit" privileges for user roles in LEM? I'm assuming "Access" means they can just view the area. Myself and my co-administrator need to have full...

View Article

I can not get my SWLEMReports.exe to run.

When I try to run my Reports 6.0 I get error msg: "The Crystal Reports run-time engine is missing" and  sometimes, "cslibu-2-0-0.dll missing".   Uninstalled, Re-ran ReportsAndCrystal.exe, deleted dir,...

View Article


Success Stories of gaining operational value from LEM

I would really love to hear specific success stores of where people have gained operational value from LEM.  I am hoping that by sharing some stories or examples we might all be able to gain new...

View Article

Alerts on Event Viewer items

Can someone direct me to an article or specific pages in the LEM user guide that will explain how to setup Event Viewer monitoring for certain events? I have been tasked with alerting a team if any...

View Article

Is it possible to archive Linux syslog and audit.log files?

Hi All,I am a beginner with SolarWinds LEM.  I have been reading the LEM User Guide (689 Pages). We just installed the Linux LEM Agent on our test server. Is it possible to have the LEM Agent compress...

View Article


Websense activities?

If we setup websense activity monitoring will LEM be able send an alert for x connections to a specific URL from any one computer in 60 seconds?  I need to provide documentation of the capabilities...

View Article


USB authorized group

I'm wondering how to setup a USB authorized group. I'm looking at the AUTHORIZED USB DEVICES group and it's asking for Name, Data and Description. What exactly do I need to input for it to understand...

View Article

"Response Window", I Think I Know?

Ok, I have to admit that I don't know it all, a recent reading of Socarates has convinced me of my lack of knowledge. My question to you all is....what EXACTLY does response window do? I understand...

View Article

RECOMMEND LEM ON SPREAD THE WORD FOR A $25 AMAZON GIFT CARD!

Let the community know how impressed you are with LEM and earn a $25 Amazon gift card!  Simply post your review in Spread The Word with the questions answered below:       What was life like before...

View Article

LEM vulnerability, how to solve it?

Becauseinformation securitypolicy,Vulnerability scanningmust bedoneusingIPS,There is avulnerabilityscan results follows,How do Irepairit ?HTTP Server Prone To Slow Denial Of Service AttackCVE-2007-6750...

View Article


Add user who made AD change to alert we receive from LEM

We have alerts setup that we get when a user is created or disabled in Active Directory.  We would like to add the username of the person who made that change to the alert.  Is there a variable for...

View Article

!LEM Thoughts of the Week: What's your Top LEM/SIEM Tip or "Wish I Knew THAT...

If you missed last week's discussion on the fun mishaps of the Target breach, it's here: Re: !LEM Thoughts of the Week: Detecting the Target Breach? This week, thought I'd go a different direction....

View Article


Image may be NSFW.
Clik here to view.

Usefulness of these Internal Rules fired from LEM Appliance

I just wanted to question the usefulness of some of the internal rules which are setup to fire.  These come from the LEM appliance and do not have any useful information other than the fact that these...

View Article

Windows share auditing with LEM

I am new to using LEM, and have found that out of the box, Windows has a lot of auditing occuring that is creating issues in making reports with LEM.  When I run a report for a few hour period, I have...

View Article


LEM Appliance Backups to VMWare VDP

Just getting started here with LEM.  Our backup solution is VDP Advanced. For some reason, the backup attempt fails everytime.  I haven't dug into the VDP logs yet but thought I'd check to see if there...

View Article

How do I configure the SNMP community string for LEM?

I haven't been able to find the setting whereby I can configure the SNMP read-only community string for the LEM appliance, so that I can monitor its health/set up alerting etc through Solarwinds NPM. I...

View Article

Image may be NSFW.
Clik here to view.

Syslogs from Cisco ACE 4710 Application Control Engine

Hi, I've was told that the latest Cisco Firewall connector would be able to read the syslogs from the Cisco ACE 4710 Application Control Engine device.  I set the facility to 18, which logs into local2...

View Article
Browsing all 5911 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>