Open for Voting

Integration: Log & Event Manager and Orion Platform

Use-case

Orion Platform alerts can be sent to LEM (traps? emails? syslog?) for further analysis and correlation

Parents
  • FormerMember
    FormerMember

    To send alerts from Orion to LEM, you should be able to fire them as SNMP traps to LEM using Orion's alert manager, then on LEM set up the Orion connector in Manage > Appliance > Connectors (or using connector discovery if you have had Orion alerts fire already) to have them generate LEM events.

    To send events as traps from LEM to Orion, you can use the send SNMP trap action in rules, and you also need to enable the SNMP Active Response connector in Manage > Appliance > Connectors. On the Orion side they appear in the SNMP Traps view.

    If there's stuff we can improve on here, let us know.

Comment
  • FormerMember
    FormerMember

    To send alerts from Orion to LEM, you should be able to fire them as SNMP traps to LEM using Orion's alert manager, then on LEM set up the Orion connector in Manage > Appliance > Connectors (or using connector discovery if you have had Orion alerts fire already) to have them generate LEM events.

    To send events as traps from LEM to Orion, you can use the send SNMP trap action in rules, and you also need to enable the SNMP Active Response connector in Manage > Appliance > Connectors. On the Orion side they appear in the SNMP Traps view.

    If there's stuff we can improve on here, let us know.

Children
No Data