Integrating PAM360 with ManageEngine EventLog Analyzer |
Sl. No | Button | Definition |
---|---|---|
1 |
Enable |
You will see this option if the integration is disabled. Click this button to integrate PAM360 with EventLog Analyzer by providing the required details of the EventLog Analyzer server. |
2 |
Edit |
You will see this option if the integration is enabled. Click this button to update the EventLog Analyzer server details, such as the hostname and port number. |
3 |
Disable |
You will see this option if the integration is enabled. Click this button to disable the existing integration with the EventLog Analyzer server. |
Notes:
Receive alerts for activities related to PAM360 in the form of email or SMS whenever your PAM360 server encounters unauthorized logins. Start configuring the alerts once the PAM360-EventLog Analyzer integration is complete. Remember, the alerts can be configured from the EventLog Analyzer console only. Create a new alert profile and specify your preferences. Here are the steps in detail:
Source Device not equals pam360-server (choose the name of your PAM360 server)
+
Logon Type equals 10
+
Event ID equals 4624 (this ID signifies unauthorized login)
The specified criteria will look like: Rule Criteria = (SOURCEHOST:pam360-server) AND (LOGONTYPE:10) AND (EVENTID:4624)
The alert profile creation is complete. Now, all alerts related to the selected criteria will be listed under the Alerts tab.
To know more in detail about creating alert profiles, click here. To know more about creating new workflows in EventLog Analyzer, click here.