SolarWinds Log and Event Manager (SLEM)
On July 1, 2011 SolarWinds purchased TriGeo and has incorporated their Security Information and Event Management technology into their product monitoring portfolio.
Companies concerned with protecting critical resources have created sophisticated layered security, or defense-in-depth systems and infrastructures including firewalls, IPS, VPN, anti-virus, anti-spam, URL/content filtering and other security products. The corporate challenge is to assemble and interpret the tremendous volume of logs generated by each of these security systems in addition to server, switch, workstation and other potentially vulnerable devices.
SolarWinds Log and Event Manager (SLEM) solution integrates your existing network security products and operating systems, collects their data in real-time, and then aggregates, correlates, and filters the data into a central control console.
Product Features:
- Proactive Log Analysis – In today’s IT environments, you can drown in log data if you’re not careful. The multitude of distributed systems, applications, and networks in your infrastructure all have associated log files – but this information is useless if you can’t effectively collect and analyze it.
- Real-time Event Correlation – Correlating millions of events from your network, systems, applications, virtual machines and storage infrastructure can be daunting. The SLEM is an unprecedented correlation engine; it is real-time, in-memory, non-linear, and multi-dimensional. It’s both powerful and flexible.
With nearly 700 built-in correlation rules, SLEM delivers visibility right out of the box, eliminating hours of work. To customize to your environment there’s an unbelievably simple correlation rule builder that employs a graphical interface to make it easy for IT administrators to quickly build custom rules.
- Ad Hoc IT Search – SLEM gives you advanced search functionality that enables you to effectively perform forensic analysis on events. With an intuitive search interface, you can have immediate insight into activities that would normally go unnoticed. Using a unique Word Cloud, along with treemaps, bubble charts, and histograms, SLEM offers a fully interactive search environment that makes it easy to visualize search data and understand how to take action on it. Plus, you’ll be amazed at how quickly (and securely) you can search terabytes of data, thanks to our innovative engineer’s approach to data aggregation, archiving, and encryption.
- Active Response & Threat Mitigation – With a library of built-in Active Responses the SLEM solution allows you to mitigate threats and take actions like quarantining infected machines, blocking IP addresses, disabling user accounts, killing unauthorized processes, restarting services, and more.
- Compliance Reporting – over 300 reports including Payment Card Industry Data Security Standard (PCI DSS), Gramm-Leach-Bliley Act (GLBA), the Sarbanes-Oxley Act (SOX), North American Electric Reliability Corporation Critical Infrastructure Protection (NERC CIP) and the Health Insurance Portability and Accountability Act (HIPAA) and more. A built-in reporting console makes it easy to generate reports and provide graphical summaries. Schedule reports to run automatically and export to a wide variety of formats.
- USB Detection and Prevention – Defend against data loss. USB devices are a nightmare for IT administrators. To defend against data loss, the SLEM technology can track USB activity and identify unauthorized use of copying of sensitive files. The product can actually notify you in real time, disable the user account, quarantine the workstation or even eject the USB drive.
- Log Storage for the Long Term – SLEM uses a high performance, high compression data model, storing data at 60:1 ratio.
- Intuitive Interface – The console is designed to help you visualize log and event data so that you can take action instead of spending hours sifting through the data. It offers drag-and-drop, point- and click features to sort through the data without having to learn a complex query language.
- Support for Data Sources – SolarWinds Log & Event Manager supports dozens of manufacturers, hundreds of products, and thousands of models and more are added each week.

Video Clip: SolarWinds Log and Event Manager Overview Video!
If you're a business leader or IT manager you know that exposure to damage, loss, and legal liabilities is mounting - Unmanageable and cryptic log files are growing exponentially - The high costs of monitoring your security tools manually is overwhelming. You also know that in today's network environment, it's imperative that log files be analyzed. These files contain vital information that's critical to the business continuity of your enterprise.
Join us for "Defending the Network with Security Information Management" and you'll see a live demonstration of real-time log management, event correlation and what everyone is talking about - Proactive Network Defense. Who should attend? Anyone who needs to ensure the information security, regulatory compliance, business continuity or operational efficiency of their organization, or provides the tools and solutions that make it possible.
The Webcast demonstration is free of charge. Register today!