Eventlog Analyzer export to CSV really slow..
Hi, I'm sure I'am not the only who noticed this.. Basically I am trying to export a search result about login event that is made up of about 2 million rows. Based on progress I see it should takes few hours to complete. How can it be so slow? Is there
signature
Does the site have a signature section? If so, where do I go to install it? doodle jump
Run workflow failed. Access\Permission denied
Hi, I have a problem with workflow in EventLog Analyzer trial (build: 12411). I run workflow on monitoring device (windows server 2016). I receive the following error: 1. Test service execute failed Error # while using given credential - Access is denied.
Registry alerts
Hello there! I am trying to set up email alerts to notify me about registry changes and access. However, I am unable to get a single message. While I am quite sure I have configured everything fine, as found here, it seems I need to enable some things
PFSense Logs Issue
Hi there, Having issues with PFSense logs. Things seems to be working fine but in Reports (of course under pfSense), it says not device configured. Screenshots attached for reference and guidance. Thanks
Where to add File Integrity Monitoring???
Hi. Using EventLogAnalyzer Version 12.4.1. I added 4 Devices (Windows Servers 2016). One of them is a File Server, one a RDP-Server (Terminalserver). Wanted to view the buildin Standard-Reports. So I switched to the Tab "Reports", choosed "Windows File
Reset Logcollector
I am running Eventlog Analyer 9.0. I am directing both the Archive and the Index to my D: drive but the eventlog.out file has filled my C: drive causing the error “Log Collection & Import has been Stopped. Increase Disk Space and Reset LogCollector to
username "\"
Hi, Could somebody help to understand why do I get authenication attemps with username "\". I have attepts like this for several machines in our domain. I was trying to find any information on this cases on the web, but couldn't find anything. Username
EventLog Analyzer’s 2023 in Review
2023 has been a year of significant advancements and improvements for EventLog Analyzer. With a host of new features, enhancements, and fixes, EventLog Analyzer has fortified its capabilities, offering a more robust and efficient solution for log management
How to set "log source" for a device?
Hi Team, In my Solaris servers, I want to report on "unsuccessful user logons", but I can only add devices, so my question is, where and what path/file should I set as my data-gathering source? Kind regards Mo
Password reset
I forgot the password for my username (admin). Could you please tell me how to reset the password?
Cannot obtain the SQL Logs
I am encountering some issue while adding SQL Server or MySQL Server into Manage Engine Log Analyser and i may need your assistance on this. Before we dive into the issue, let me Explain the deployment structure so it will be more relevant to the issue
Mikrotik logs unreadable
Hello, I add a Mikrotik in the syslog devices configuration, I get logs, but can't read them, I don't know if the configuration is wrong, I attach screenshot. Hope you can help me. Regards
Commnad Line Audit
How do I audit Command Line through ELA?
Heavy Disk Usage
Hello there, We are facing problems with a huge disk usage of Log360. It's at the same machine with Eventlog Analyzer. Host machine is Windows server. We are looking for a way to purge the data or shrink it or ... . No helpful option in general setting
How to calculate my current events per second?
How to calculate my current events per second?
ELA having more than 20 ms
ESX PROD My ELA server is very slow and I am trying to understand why.
How to configure Syslog in Fortinet Firewall
Kindly help to configure ME ELA in Fortinet Firewall currently we are running with fortios 7.4.0
Unable to read log from the newly added device.
Successfully added the Cisco device but unable to receive logs from it. What to do?
the integration with Log360 Cloud
Hi, I would like to check if the integration with ELA is still available.
EA Dashboard - Logs Trend wrong Time
i set the wrapper additional to GMT-7, System Diagnostics confirms I have GMT-7 set and shows proper time. But on the Dashboard - Logs Trends widget still shows UTC times. Anyone got any idea how to fix this? TIA Jim..
Problème export logs
Bonjour, Nous avons effectué hier (08/06/2023) un export des logs sur "EventLog Analyzer > Firewall VPN user Connected" mais les résultats nous apparaissent vides et aucune donnée ne nous est parvenue. Nous avons ensuite vérifié les bases enregistrées
Testing SMS via HTTP (to SendQuick - formally Talariax) in ELA encountered error
Hi My SMS provider is SendQuick (formally name TalariaX). In ELA , my configuration , under System Settings \ Notification Settings \ SMS Settings : a) SMS Provider : wwwwwwwwwwwSMS Service Provider b) Service Type : HTTP c) HTTP(S) Method : Post d) HTTP(S)
Removing Workstations from Server Audit in AD Audit Plus
I just installed Log360 and it populated my workstations automatically. But it pulled a bunch of old disabled workstations from my Active Directoy. I and goto Server Audit and then Configured Servers and Clcik Workstations. Here I try to delete any workstaton
About retention settings
Hi all, As seen in the help page(https://www.manageengine.com/products/eventlog/help/StandaloneManagedServer-UserGuide/AdminSettings/db-storage-settings.html) retention settings of ela, "Current Storage Size" allows us to adjust how many days to keep
About retention settings
Hi all, As seen in the help page(https://www.manageengine.com/products/eventlog/help/StandaloneManagedServer-UserGuide/AdminSettings/db-storage-settings.html) retention settings of ela, "Current Storage Size" allows us to adjust how many days to keep
Analyzer doesn't seem to be parsing firewall logs
I'm trying to send OPNsense (fork of PFsense) firewall logs to the analyzer. However the analyzer doesn't seem to properly parse the logs as firewall logs. Such as it doesn't see the IP's or action etc of the log. It managed to pull the date pretty much.
Zyxel eventlog categories
Hello. I configured my Zyxel Zywall USG100 using this manual As a result, It works. Eventlog analyzer grab events and make report. Unfortunately, I see only 3 categories: Notice Information Alerts Other categories are empty. Also, I see a message column
My EventLog Analyzer often failed
Hello. I have virtual Ubuntu 22.04 (ESXI). I installed EventLog Analyzer Server and ran it. The first-time server doesn't install like the service, but after manual installation, all went well. I run the service and logged in through my browser correctly.
Create alert for device down
Can i create alert notfication for hardware device down ? eg dell network switch is down, i want eventlog analyzer to send email alert to notify us
what should be Specs of my Windows Host Machine where i would install EventLog Analayzer Application and manage logs
Dear Team, what should be Specs of my Windows Host Machine where i would install EventLog Analayzer Application and manage logs. Below is the detail of myd evices etc. I have an Oracle EBS Suite Configured on Linux machine. I have total 11 Devices: *
Help setting up alert to display Server Reboots?
I am trying to setup up ManageEngine to send me an email alert when a server goes offline, and one when it comes back online, I have tried adding the following event ID's and restarted a server but it doesn't send the email through. The email alerts are setup fine though because we have a lot of other alerts setup, could someone possibly share how they are currently getting the alerts to work when the Server reboots? Event ID's I've tried: Event ID 6005 Event ID 6006 Event ID 6008 Event ID 6009 Event
System powerfailure and reboots - Alert creation on Event log analyser
Hi Community, can someone guide me on what event id must be used to track system reboots and power failures? Systems reboots on Windows servers/stations Power failure on networking syslog devices like switches. WE are on build 12.2.5.
I deleted a Windows Domain Controller from Manage Engine EventLog Analyzer Group and Now I can't seem to add it back
Dear Community, I have Configured Manage Engine and was successfully using it without any Issue. For some reason I deleted a Domain Controller from the Windows Devices and then wanted to add it back, but I can't. I am Attaching Screenshots for you Reference:
How can I Add Oracle Application/ Databse Logs to collect logs in Manage engine EvenTLog Analyzer
Dear Community, I have My Oracle Database/EBS Application & I want to Monitor it's Logs in Manage Engine EventLog Analyzer. I have already Added My Base Machine i.e. Linux Machine in ManageEngine EventLog Analyzer and Syslog Events are being Monitored
Log Collection Filter in ManageEngine EventLog Analyzer
Dear Community, I have Added Windows Devices and Syslog Devices in Manage Engine EventLog Analyzer. But all the Logs are being scanned. Instaed, i only specific weinwos security logs to be scanned (4720 i.e. new user creation ,4724 i.e. Password reset
Cisco WLC
Is anyone monitoring a Cisco WLC (9800 and 5520 in my case) with EventLog Analyzer? We arent getting any real actionable data from the syslog or traps with the built-in reports.
Microsoft Sysmon logs
Dears, Does Eventlog analyzer supporting parsing Microsoft Sysmon logs that help in forensic investigation ? I checked but couldnt find anything related to it. https://docs.microsoft.com/en-us/sysinternals/downloads/sysmon
Custom Log Parser no longer available?
Quick question, how do we create custom patterns for log parsing in the current version? I am directed to the search tab (see screenshot) which doesn't seem to offer that functionality. My experience does not match up with what is in the product docs: https://www.manageengine.com/products/eventlog/help/StandaloneManagedServer-UserGuide/AdminSettings/custom-patterns.html
Moving Eventlog Directory to another partition
Hello. I need some help or guidance on moving the eventlog analyzer. I already did but can't start the service it says: DAEService in the wrapper log and file not found on the serverout log. BTW, is just another partition, it's in the same server. Already
Next Page