Get the latest news about SolarWinds Security Event Manager (SEM)
Hello everyone! This is my first time diving into SEM from Solarwinds. I have created a simple rule to monitor remote logins from computers that normally would never RDP into anything. This was my first rule I ever made and it was mainly created so I could learn the system, but it can be helpful if an admin saved their…
207.237.167.131New York, New York, USAt risk
I have a .net c# web app. I send api call and can get all of hardwares.json I want to bring back only data using query for hardwares.owner.id I am using this syntax curl /harwares.owner.id=123456 the call goes through but ignores the filter. The hard part is to query inside of the owner tag. Has anyone any suggestions?…
baseurl/hardwares?owner.id=xxxxx the result is all hardware records unfiltered. Cindy Mello cmello@us.medical.canon 7146514918
My simulator has both Windows and Linux based machines. I've noticed that we have USB Defender and an anti-virus alert. Do they also monitor Linux operating systems? Thanks
Has anyone looked into auditing the bitlocker status and events (enable\disable\lock\unlock) on machines running the Windows agent? Thinking about a manual filter in the meantime. Noticed this this feature request from approx 9 months…
Just like this anime can anyone knows to describe the brains behind the NTA applicaton
I would like to know if SolarWinds SEM has a best practice guide for domain controllers that also have a SEM agent and connectors on them. Our agency uses our DC as the central logging point for all host to forward their event logs too (system, application, and security). Our DC picks these logs up and stores them for X…
I have created some conditions but this is not detecting the impacted server. below is the trigger condition and PFB snapshot node = server Volume type = Fixed disk volume percentage available = 95% caption contains = C: Can someone confirm the trigger condition or suggestion if someone already doing the same OS drive C…
I want the SEM to monitor the average data leaving our network and alert when it goes above this average by a percentage we determine could be DLP. Is this possible and how can this be done? Thank you, Lou
It looks like you're new here. Sign in or register to get started.