ESM v8.1 Build7022008 (Full Version)

All Forums >> [Network Security] >> GFI EventsManager



Message


imatone -> ESM v8.1 Build7022008 (4.Jul.2008 12:41:48 PM)

Has anyone tried the latest build of ESM v8 Build7022008 & ESM ReportPack? I've just upgraded mine this afternoon! The license key may be questionable. Dejavu or what! Remember way back in Feb 2008 when v8 was released, the key didn't work.  

We have experienced a number of issues included but not limited to:
1. Invalid lic key stopping EventsManager service. Had to revert to Evaluation!
2. Using the latest build, it seems only Windows 2003 Domain Controller Group can accept events. I couldn't receive any Windows events from all my Windows XP, Server clients,
3. Cisco PIX & Linux servers are not sending me any syslogs either.

Am I the only one?




imatone -> RE: ESM v8.1 Build7022008 (6.Jul.2008 3:37:06 AM)

As a follow-up message, I'd manage to get #1 & 2 working NOW. Didn't bother to t-shoot what went wrong. Now, I have to figure out how to get the syslogs or any logs from my PIX.




DrewE -> RE: ESM v8.1 Build7022008 (8.Jul.2008 1:36:34 PM)

As a test, there are several 3rd-party 'Sys Log Generators' that you can install on the GFI EventsManager server.  These can generate sample syslog messages that can be sent to our product.  This will quickly help you determine if the configuration issue is with our software, or your routers.




imatone -> RE: ESM v8.1 Build7022008 (8.Jul.2008 1:54:16 PM)

Hi Drew,
I'm using Kiwi Syslog Daemon and it is sending my ESM v8 logs but not my PIX from my notebook. Any info of how the PIX or Cisco Catalyst 29x0/37x0 should be configured to send ESM v8 something logs. Syslogs or SNMP traps!




DrewE -> RE: ESM v8.1 Build7022008 (15.Jul.2008 2:53:29 PM)

I am unaware of the necessary settings on the Cisco device in order to get sys logging functioning. 

Just to clarify do you notice that either of these are occurring:

  • Your Kiwi Syslog software is detecting syslog messages from your Cisco device
  • Kiwi Syslog Generator can send syslog messages into GFI EventsManager




imatone -> RE: ESM v8.1 Build7022008 (17.Jul.2008 7:55:47 PM)

After adjusting the event level of the PIX (increasing to higher level to broadcast more events), our ESM v8 server is capturing events from the PIX, Blue Coat & even Barracuda. Everything is working fine now. Tks Drew!




Page: [1]