Using Splunk to Monitor the Customer Experience

Size: px
Start display at page:

Download "Using Splunk to Monitor the Customer Experience"

Transcription

1 Using Splunk to Monitor the Customer Experience JUSTIN BROWN Pacific Northwest National Laboratory NLIT Summit 2015

2 About Me Justin Brown IT Engineer Automation & Monitoring Team 15 Years at PNNL Lead Engineer for Splunk

3 The Challenge Traditional monitoring Servers & Services Customer Focused Outside looking in

4 Why Splunk Pulls together logs from several sources Scripted inputs Database connectivity Visualization Splunk 6.x Dashboard Examples

5 The Targets Accounts Workstations Lync Websites Network

6 The Plan

7 Accounts Account Lockouts Bad Password Attempts Calls to the Help Desk

8 Accounts: Bad Passwords Source: Domain Controller Event Logs index=os source=wls:security host=dcpn* EventID=4771 Status=0x18 timechart span=1h dc(user) as perhour

9 Accounts: Account Lockouts Source: Domain Controller Event Logs index=os source=wls:security host=dcpn* EventID=4740 process=security timechart span=1h dc(user) as perhour

10 Accounts: Help Desk Calls Source: Help Desk Ticket Database dbquery "MAXIMO_PROD" "SELECT TICKETID, DESCRIPTION, COMMODITYGROUP, COMMODITY FROM MAXIMO.TICKET WHERE REPORTDATE > SYSDATE - 1 search (DESCRIPTION=*password* AND COMMODITY=ADACCESS) OR DESCRIPTION=*account*lock* rename REPORTDATE as _time timechart span=1h count(ticketid) as perhour

11 Workstations Reliability Score Calls to the Help Desk

12 Workstations: Reliability Score Source: Workstation Event Logs `wls` EventID=2005 ProviderName=Microsoft-Windows-Reliability-Analysis- Engine Stability=* timechart span=1d eval(round(avg(stability),2)) as perday `wls` EventID=2005 ProviderName=Microsoft-Windows-Reliability-Analysis- Engine Stability=* timechart span=1d dc(host) as perday

13 Lync SCOM Synthetic Transactions Application Crashes and Hangs Calls to the Help Desk

14 Lync: Synthetic Transactions Source: SCOM Synthetic Transactions in Event Logs index=os source=wls host=<server name> EventID=334 timechart span=1h count as perhour

15 Lync: Crashes & Hangs Source: Workstation Event Logs `wls` EventID=1001 process=application Data1=APPCRASH Data4=lync.exe timechart span=1h count as perhour

16 SCOM Synthetic Transactions Application Crashes and Hangs Calls to the Help Desk

17 Synthetic Transactions Source: SCOM Synthetic Transaction Logs index=scom sourcetype=scom_input DistApp=Exchange MaintenanceMode=False Status=Error timechart span=1h count as perhour

18 Web Applications Selenium Synthetic Transactions SCOM SharePoint monitoring.net Application Errors on Workstations Errors from IIS logs Calls to the Help Desk

19 Web Applications: Selenium Source: Selenium Synthetic Transactions index=web sourcetype=synthetic:transaction transaction execution_id transaction_name startswith="transaction_start endswith="transaction_end keepevicted=true maxspan=5m search closed_txn=0 timechart span=1h count as perhour

20 Web Applications:.Net Errors Source: Workstation Event Logs `wls` EventID=1309 RequestURL=http*://* Eventmessage="An unhandled exception has occurred. timechart span=1h dc(user) as perhour

21 Network Solar Winds via SCOM Alerts Calls to the Help Desk

22 Building Each Row index=os source=wls:security host=dcpn* EventID=4740 timechart span=1h dc(user) as perhour stats sparkline(max(perhour),1h) as Trend, max(perhour) as Highest, latest(perhour) as Now eval Section="Account Lockouts table Section, Trend, Now rename Now as "Current Count"

23 Adding the Status index=os source=wls:security host=dcpn* EventID=4740 timechart span=1h dc(user) as perhour stats sparkline(max(perhour),1h) as Trend, max(perhour) as Highest, latest(perhour) as Now rangemap field=now low=0-10 elevated=11-20 default=severe rename range as "Current Status rangemap field=highest low=0-10 elevated=11-20 default=severe rename range as "Past 24 Hours eval Section="Account Lockouts table Section, Trend, Now, "Past 24 Hours", "Current Status" rename Now as "Current Count

24 Combining Queries eval Section="Account Lockouts table Section, Trend, Now rename Now as "Current Count append [ search index=os source=wls:security host=dcpn* EventID=4771 Status=0x18 timechart span=1h dc(user) as perhour... eval Section="Bad Passwords ]

25 Adding Icons Custom JavaScript & CSS

26

27

28

29 Custom Drilldowns index=os source=wls:security host=dcpn* EventID=4740 timechart span=1h dc(user) as perhour stats sparkline(max(perhour),1h) as Trend, max(perhour) as Highest, latest(perhour) as Now eval Section="Account Lockouts eval Drilldown=ced_account_dashboard table Section, Trend, Now rename Now as "Current Count"

30 Questions?

Please contact Cyber and Technology Training at (410)777-1333/[email protected] for registration and pricing information.

Please contact Cyber and Technology Training at (410)777-1333/technologytraining@aacc.edu for registration and pricing information. Course Name Start Date End Date Start Time End Time Active Directory Services with Windows Server 8/31/2015 9/4/2015 9:00 AM 5:00 PM Active Directory Services with Windows Server 9/28/2015 10/2/2015 9:00

More information

#splunkconf. Analyzing & Mitigating Malicious Web Activity using Splunk Enterprise

#splunkconf. Analyzing & Mitigating Malicious Web Activity using Splunk Enterprise #splunkconf Analyzing & Mitigating Malicious Web Activity using Splunk Enterprise StubHub The World s Largest Fan-to-Fan Marketplace At StubHub, our mission is simple: provide fans a safe, convenient place

More information

Splunk Search Pro Tips

Splunk Search Pro Tips Splunk Search Pro Tips Dan Aiello, Principal Cyber Security Engineer Splunk.conf2015 Dan Aiello Principal Cyber Security Engineer, MITRE Approved for Public Release; Distribution Unlimited. 15-2752. Agenda

More information

Executive Summary. Public Relations Plan using FAA Case Study

Executive Summary. Public Relations Plan using FAA Case Study Executive Summary In regards to the recent IT-related events, such as the recent degradation in service for a Federal Aviation Administration's system for tracking flights has got the GIAC senior executives

More information

Application for Splunk Enterprise

Application for Splunk Enterprise Application for Splunk Enterprise User Guide Document Version 1.77 28 October 2015 10004-01 EN Rev. A 2015 ThreatConnect, Inc. ThreatConnect is a registered trademark of ThreatConnect, Inc. UNIX is a registered

More information

Microsoft SQL Server 2012 - Review

Microsoft SQL Server 2012 - Review Microsoft Cert Kit Catalogue 1 Microsoft Cert Kit Page 3 Windows Page 4 Server 2012 and 2008 Page 5 SQL Server 2012 Page 6 Page 7 Page 8 Page 9 Page 10 Page 11 Page 12 Cloud Messaging Communication SharePoint

More information

Τhe SAS BI delivers business-critical answers ahead of the competition Yannis Salamaras Senior Business Intelligence Consultant SAS Greece & Cyprus

Τhe SAS BI delivers business-critical answers ahead of the competition Yannis Salamaras Senior Business Intelligence Consultant SAS Greece & Cyprus Τhe SAS BI delivers business-critical answers ahead of the competition Yannis Salamaras Senior Business Intelligence Consultant SAS Greece & Cyprus The Value of the Information What s wrong with this picture?

More information

Client Requirement. Why SharePoint

Client Requirement. Why SharePoint Client Requirement Client wanted a sharepoint system that could meet their document and record management needs. It should also improve client s information management systems. To support existing and

More information

How To Manage Active Directory With Splunk

How To Manage Active Directory With Splunk White Paper: Splunk for Microsoft Active Directory Domain Services Splunk Inc. 250 Brannan Street San Francisco, CA 94107 www.splunk.com [email protected] Executive Summary Active Directory has become one

More information

Service Manager 9.41 Smart Analytics Demo Script

Service Manager 9.41 Smart Analytics Demo Script Service Manager 9.41 Smart Analytics Demo Script Before we begin First read HP SM Smart Analytics Trial Kit.pdf. It includes important information, for example, how to setup Google Chrome browser to function

More information

Welcome to the ARCO Group Support Desk

Welcome to the ARCO Group Support Desk Welcome to the ARCO Group Support Desk To allow us to provide you the best service possible when you have a support need it is very important that you follow these instructions when requesting support.

More information

MOC MICROSOFT WINDOWS SERVER 2008 Hs Inicio Fin Días Horario. 6433 Planning and Implementing Windows Server 2008 40 26-may. 6-jun.

MOC MICROSOFT WINDOWS SERVER 2008 Hs Inicio Fin Días Horario. 6433 Planning and Implementing Windows Server 2008 40 26-may. 6-jun. MOC MICROSOFT WINDOWS SERVER 08 Hs Inicio Fin Días Horario 64 6421 6425 6426 Fundamentals of Windows Server 08 Network and Applications Infrastructure Configuring and Troubleshooting Windows Server 08

More information

Symantec Enterprise Security Manager Baseline Policy Manual for CIS Benchmark. For Windows Server 2008 (Domain Member Servers and Domain Controllers)

Symantec Enterprise Security Manager Baseline Policy Manual for CIS Benchmark. For Windows Server 2008 (Domain Member Servers and Domain Controllers) Symantec Enterprise Security Manager Baseline Policy Manual for CIS Benchmark For Windows Server 2008 (Domain Member Servers and Domain Controllers) Symantec Enterprise Security Manager Baseline Policy

More information

VSI Predict Able. We Focus on Your IT So You Can Focus on Your Business

VSI Predict Able. We Focus on Your IT So You Can Focus on Your Business VSI Predict Able We Focus on Your IT So You Can Focus on Your Business Agenda P Introduction to managed services P Thorough Initial Assessment and Asset Management P 24/7 Monitoring, Alerting and Reporting

More information

GSX Monitor & Analyzer. for Microsoft SharePoint

GSX Monitor & Analyzer. for Microsoft SharePoint GSX Monitor & Analyzer for Microsoft SharePoint 1 About GSX Solutions Founded in 1996, Headquartered in Switzerland Offices in USA, UK, France, Switzerland, China 600 customers In 40 countries GSX Solutions

More information

THE OPEN UNIVERSITY OF TANZANIA

THE OPEN UNIVERSITY OF TANZANIA THE OPEN UNIVERSITY OF TANZANIA Institute of Educational and Management Technologies COURSE OUTLINES FOR DIPLOMA IN COMPUTER SCIENCE 2 nd YEAR (NTA LEVEL 6) SEMESTER I 06101: Advanced Website Design Gather

More information

Criteria for web application security check. Version 2015.1

Criteria for web application security check. Version 2015.1 Criteria for web application security check Version 2015.1 i Content Introduction... iii ISC- P- 001 ISC- P- 001.1 ISC- P- 001.2 ISC- P- 001.3 ISC- P- 001.4 ISC- P- 001.5 ISC- P- 001.6 ISC- P- 001.7 ISC-

More information

Data Center Services. The Johns Hopkins Health Systems And The Johns Hopkins University

Data Center Services. The Johns Hopkins Health Systems And The Johns Hopkins University Data Center Services Production Support Enterprise SFTP Providing the customer a single point of control to manage SFTP across the Johns Hopkins Enterprise SFTP Request Form link The Johns Hopkins Health

More information

Course 55004A: Installing and Configuring System Center 2012 Operations Manager

Course 55004A: Installing and Configuring System Center 2012 Operations Manager Course 55004A: Installing and Configuring System Center 2012 Operations Manager Course Details Course Code: Duration: Notes: 55004A 5 days This course syllabus should be used to determine whether the course

More information

SCDOT FTP Server User Guide

SCDOT FTP Server User Guide The new SCDOT File Transfer () solution allows SCDOT employees or customers to upload/download data using either a desktop installed software or a web browser interface. The desktop client can be easily

More information

Symantec Enterprise Security Manager Baseline Policy Manual for CIS Benchmark

Symantec Enterprise Security Manager Baseline Policy Manual for CIS Benchmark Symantec Enterprise Security Manager Baseline Policy Manual for CIS Benchmark For Windows Server 2008 Domain Controllers Version: 3.0.0 Symantec Enterprise Security Manager Baseline Policy Manual for

More information

55004A: Installing and Configuring System Center 2012 Operations Manager

55004A: Installing and Configuring System Center 2012 Operations Manager Sales 406/256-5700 Support 406/252-4959 Fax 406/256-0201 Evergreen Center North 1501 14 th St West, Suite 201 Billings, MT 59102 55004A: Installing and Configuring System Center 2012 Operations Manager

More information

Binding an OS X computer to Active Directory at NEIU (Existing User)

Binding an OS X computer to Active Directory at NEIU (Existing User) Binding an OS X computer to Active Directory at NEIU (Existing User) The instructions in this guide assume that a local Administrator account is available on the Macintosh computer. These instructions

More information

Network Edition Download / Installation Instructions

Network Edition Download / Installation Instructions Network Edition Download / Installation Instructions This document includes download/installation instructions for installing PlanGuru v6 on a network server. To facilitate this process, we recommend that

More information

Qualifying Microsoft Training for Software Assurance Training Vouchers (SATVs)

Qualifying Microsoft Training for Software Assurance Training Vouchers (SATVs) Qualifying Microsoft Training for Software Assurance Training Vouchers (SATVs) Product Technology Product Number Title License Management, License Management 55071 Course 55071 : Microsoft Software Asset

More information

Grid CompuAng AnalyAcs with Splunk Finnbar Cunningham

Grid CompuAng AnalyAcs with Splunk Finnbar Cunningham Copyright 2014 Splunk Inc. Grid CompuAng AnalyAcs with Splunk Finnbar Cunningham Head of Grid CompuAng OperaAons & Support Credit Suisse Disclaimer During the course of this presentaaon, we may make forward-

More information

Approved SCOM Health Check Report Installation Guide

Approved SCOM Health Check Report Installation Guide Installation Guide Date: 2015-04-01 Version: 1 Table of Contents Introduction... 2 Summary... 2 Intended audience... 2 Change log... 2 Overview... 3 Implementation... 4 Download and install the Report

More information

Barracuda Load Balancer Online Demo Guide

Barracuda Load Balancer Online Demo Guide Barracuda Load Balancer Online Demo Guide Rev 1.3 October 04, 2012 Product Introduction The Barracuda Networks Load Balancer provides comprehensive IP load balancing capabilities to any IP-based application,

More information

WEB HELP DESK GETTING STARTED GUIDE

WEB HELP DESK GETTING STARTED GUIDE WEB HELP DESK GETTING STARTED GUIDE TABLE OF CONTENTS Install Web Help Desk (Windows)..... 3 Set Up Technician & Client Accounts 6 Configuring Ticket. 9 Configuring IT Asset..... 13 Useful Links 15 Use

More information

BroadWorks Call Center Guide

BroadWorks Call Center Guide BroadWorks Call Center Guide Table of Contents Log into Call Center Configuration Settings Page 3 Change Your Password... Page 3 Dashboard... Page 4 Agent View and Status... Page 5 Change Agent ACD State...

More information

Using the Findlay City Schools Help Desk Program. This document describes how to submit a helpdesk request into the new system for the first time.

Using the Findlay City Schools Help Desk Program. This document describes how to submit a helpdesk request into the new system for the first time. Using the Findlay City Schools Help Desk Program This document describes how to submit a helpdesk request into the new system for the first time. In order to submit a helpdesk request you will need to

More information

LANDPARK NETWORK IP Landpark, comprehensive IT Asset Tracking and ITIL Help Desk solutions October 2016

LANDPARK NETWORK IP Landpark, comprehensive IT Asset Tracking and ITIL Help Desk solutions October 2016 LANDPARK NETWORK IP Landpark, comprehensive IT Asset Tracking and ITIL Help Desk solutions October 2016 LANDPARK NETWORK IP ALLOWS YOU TO EASILY INVENTORY YOUR PC THROUGH THE NETWORK Landpark NetworkIP

More information

http://www.apple.com/downloads/macosx/internet_utilities/mozillafirefox.html

http://www.apple.com/downloads/macosx/internet_utilities/mozillafirefox.html Using Citrix SPSS on a Mac Accessing and using the SPSS software on a Mac computer is a fairly straightforward process, but there are few little glitches that seem to come up again and again. The following

More information

Specialized Training Calendar May August 2015. Training for Professionals by Professionals

Specialized Training Calendar May August 2015. Training for Professionals by Professionals Specialized Training Calendar May August 2015 Training for Professionals by Professionals Course Titles Days Fees Training Dates NETWORKING / OPERATING SYSTEMS / SERVERS Cisco Certified Network Administrator

More information

Achieving PCI COMPLIANCE with the 2020 Audit & Control Suite. www.lepide.com/2020-suite/

Achieving PCI COMPLIANCE with the 2020 Audit & Control Suite. www.lepide.com/2020-suite/ Achieving PCI COMPLIANCE with the 2020 Audit & Control Suite 7. Restrict access to cardholder data by business need to know PCI Article (PCI DSS 3) Report Mapping How we help 7.1 Limit access to system

More information

Partner Gold Learning. Microsoft TRAINING CERTIFICATION

Partner Gold Learning. Microsoft TRAINING CERTIFICATION R Partner Gold Learning TM Microsoft TRAINING CERTIFICATION Koenig Solutions offers every possible Microsoft course that you can think of. Being a Microsoft authorized Gold Learning Partner, we have the

More information

Other documents in this series are available at: servernotes.wazmac.com

Other documents in this series are available at: servernotes.wazmac.com Wazza s Snow Leopard Server QuickStart 14. Win XP - Workgroup Setup About the Document This document is the fourteenth in a series of documents describing the process of installing and configuring a Mac

More information

my team monitor employee monitoring software keeps both your office based team and virtual teams working efficiently!

my team monitor employee monitoring software keeps both your office based team and virtual teams working efficiently! my team monitor employee monitoring software keeps both your office based team and virtual teams working efficiently! My Team Monitor is a simple to use pay-as-you go cloud based software suite that tracks

More information

Integrating Autotask Service Desk Ticketing with the Cisco OnPlus Portal

Integrating Autotask Service Desk Ticketing with the Cisco OnPlus Portal Integrating Autotask Service Desk Ticketing with the Cisco OnPlus Portal This Application Note provides instructions for configuring Apps settings on the Cisco OnPlus Portal and Autotask application settings

More information

GSX Monitor & Analyzer for Microsoft Lync 2013

GSX Monitor & Analyzer for Microsoft Lync 2013 GSX Monitor & Analyzer for Microsoft Lync 2013 When End User Performance...... Matters! GSX Solutions 2014 About GSX Solutions Founded 1996, Headquartered in Switzerland Offices in USA, UK, France, Switzerland,

More information

RESOURCES FOR YOUR SUCCESS. Chats with Employees Enhanced

RESOURCES FOR YOUR SUCCESS. Chats with Employees Enhanced RESOURCES FOR YOUR SUCCESS Chats with Employees Enhanced Introduction: Help desk and ticket management tools are used to elevate the overall support facilities offered by businesses to its employees. These

More information

SchoolBooking SSO Integration Guide

SchoolBooking SSO Integration Guide SchoolBooking SSO Integration Guide Before you start This guide has been written to help you configure SchoolBooking to operate with SSO (Single Sign on) Please treat this document as a reference guide,

More information

Real world Automation with Service Manager and Azure Automation

Real world Automation with Service Manager and Azure Automation Real world Automation with Service Manager and Azure Automation System Center MVP Steve Buchanan @buchatech www.buchatech.com System Center Expert Natascia Heil @NatasciaHeil Systemcentertipps.wordpress.com

More information

Protection & Compliance are you capturing what s going on? Alistair Holmes. Senior Systems Consultant

Protection & Compliance are you capturing what s going on? Alistair Holmes. Senior Systems Consultant Protection & Compliance are you capturing what s going on? Alistair Holmes. Senior Systems Consultant Comply Prove it! Reduce the risk of security breaches by automating the tracking, alerting and reporting

More information

TIME KEEP LEGAL BILLING SOFTWARE REQUIREMENTS SPECIFICATION

TIME KEEP LEGAL BILLING SOFTWARE REQUIREMENTS SPECIFICATION TIME KEEP LEGAL BILLING SOFTWARE REQUIREMENTS SPECIFICATION 1. Introduction: This document defines the Software Requirements Specification (SRS) for the Time Keep Legal Billing software application. This

More information

Using the Broker s Credit Report for Underwriting Wholesale Version 12.23.2013

Using the Broker s Credit Report for Underwriting Wholesale Version 12.23.2013 Using the Broker s Credit Report for Underwriting Wholesale Version 12.23.2013 Pacific Union Financial, LLC (PacUnion) will accept a Broker s credit report for underwriting purposes as long as the following

More information

GSX Monitor & Analyzer for Exchange On premise. Performance, Reporting, Management

GSX Monitor & Analyzer for Exchange On premise. Performance, Reporting, Management GSX Monitor & Analyzer for Exchange On premise Performance, Reporting, Management 1 About GSX Solutions Founded in 1996, Headquartered in Switzerland Offices in USA, UK, France, Switzerland, China 600

More information

What s Up With That Airplane? Visualizing DoD Knowledge Using Splunk Dashboards. Ken Mattern

What s Up With That Airplane? Visualizing DoD Knowledge Using Splunk Dashboards. Ken Mattern What s Up With That Airplane? Visualizing DoD Knowledge Using Splunk Dashboards Ken Mattern Ken Mattern Senior Systems Analyst Data Miner Aranea Solutions, Inc. Huntsville, Alabama Department of Defense

More information

*376823* Lead Export Configuration Quick Reference Guide. Configuring Lead Export. Configuring ADP CRM

*376823* Lead Export Configuration Quick Reference Guide. Configuring Lead Export. Configuring ADP CRM Configuring Lead Export Lead Export Configuration Quick Reference Guide While there are three types of leads in ADP CRM (ileads, show and phone leads), to the system itself ADP CRM identifies all leads

More information

Log Management and Intrusion Detection

Log Management and Intrusion Detection Log Management and Intrusion Detection Dr. Guillermo Francia,, III Jacksonville State University Prerequisites Understand Event Logs Understand Signs of Intrusion Know the Tools Log Parser (Microsoft)

More information

Cherwell Service Management 5.0 Integrations List

Cherwell Service Management 5.0 Integrations List Cherwell Service Management 5.0 Integrations List The following list includes integrations that Cherwell Professional Services has implemented for various Cherwell customers. Access Manager I CRM Altiris

More information

What s New in WebLOAD 10.1

What s New in WebLOAD 10.1 What s New in WebLOAD 10.1 Version Compatibility Information WebLOAD 10.1 is compatible with all load testing scripts (Agendas) that were created using WebLOAD version 8.0 or higher. Version 10.1 highlights

More information

Project Server Plus Risk to Issue Escalator User Guide v1.1

Project Server Plus Risk to Issue Escalator User Guide v1.1 Project Server Plus Risk to Issue Escalator User Guide v1.1 Overview The Project Server Plus Risk to Issue Escalator app will immediately raise a risk to an issue at the push of a button. Available within

More information

Enterprise Solutions IT Services 4132 Heartleaf Ln Naperville, IL 60564

Enterprise Solutions IT Services 4132 Heartleaf Ln Naperville, IL 60564 Who we are Ensar Solutions Inc. is a Microsoft focused IT Services company. Our business is built around an exclusive focus on Microsoft SharePoint, Dynamics CRM, AX, Social, Azure and Mobile solutions.

More information

INFORMATION TECHNOLOGY SERVICES TECHNICAL SERVICES 2012 2013 Program Review

INFORMATION TECHNOLOGY SERVICES TECHNICAL SERVICES 2012 2013 Program Review INFORMATION TECHNOLOGY SERVICES TECHNICAL SERVICES 2012 2013 Program Description Technical Services is a service unit in Information Technology Services. The unit: 1. Acquires and distributes new computing

More information

Sisense. Product Highlights. www.sisense.com

Sisense. Product Highlights. www.sisense.com Sisense Product Highlights Introduction Sisense is a business intelligence solution that simplifies analytics for complex data by offering an end-to-end platform that lets users easily prepare and analyze

More information

Ref: Issue Raised Recommendation Priority Management Response Implementation Network and ABS E-Financials 1. Account security settings

Ref: Issue Raised Recommendation Priority Management Response Implementation Network and ABS E-Financials 1. Account security settings Appendix A Hertsmere Borough Council - Review of information technology controls 2011-12 Ref: Issue Raised Recommendation Priority Management Response Implementation Network and ABS E-Financials 1. Account

More information

Statement of Work Security Information & Event Management (SIEM) December 20, 2012 Request for Proposal No. 210802

Statement of Work Security Information & Event Management (SIEM) December 20, 2012 Request for Proposal No. 210802 Statement of Work Security Information & Event Management (SIEM) December 20, 2012 Request for Proposal No. 210802 Introduction The Pacific Northwest National Laboratory (PNNL) is located in Richland Washington

More information

SQL Server Automated Administration

SQL Server Automated Administration SQL Server Automated Administration To automate administration: Establish the administrative responsibilities or server events that occur regularly and can be administered programmatically. Define a set

More information

Network License File. Program CD Workstation

Network License File. Program CD Workstation Setting up Network Licensing for Visual Water Designer These directions will provide a detailed description of how to set up and run the network license version of Visual Water Designer. A network license

More information

START YOUR INVENTORY WITH SCANFRE

START YOUR INVENTORY WITH SCANFRE START YOUR INVENTORY WITH SCANFRE April 2014 LANDPARK SCANFREE «Quickly estimate your data processing systems before considering their evolution. Landpark Scanfree, solution for your IT asset tracking

More information

Cybersecurity Continuous Monitoring at Fermilab. Irwin Gaines NLIT 4 May 2015

Cybersecurity Continuous Monitoring at Fermilab. Irwin Gaines NLIT 4 May 2015 Cybersecurity Continuous Monitoring at Fermilab Irwin Gaines NLIT 4 May 2015 Outline Why Continuous Monitoring Fermilab and its cyber challenge and strategy Fermilab cyber defenses: what needs to be monitored

More information

Monitoring Windows Servers and Applications with GroundWork Monitor Enterprise 6.7. Product Application Guide October 8, 2012

Monitoring Windows Servers and Applications with GroundWork Monitor Enterprise 6.7. Product Application Guide October 8, 2012 Monitoring Windows Servers and Applications with GroundWork Monitor Enterprise 6.7 Product Application Guide October 8, 2012 Table of Contents Introduction...3 Definitions and Abbreviations...3 GroundWork

More information

Support Desk Help Manual. v 1, May 2014

Support Desk Help Manual. v 1, May 2014 Support Desk Help Manual v 1, May 2014 Table of Contents When do I create a ticket in DataRPM?... 3 How do I decide the Priority of the bug I am logging in?... 3 How do I Create a Ticket?... 3 How do I

More information

NASA Consolidated Active Directory Overview ( August 20, 2012 ) Les Chafin Infrastructure Engineering HPES

NASA Consolidated Active Directory Overview ( August 20, 2012 ) Les Chafin Infrastructure Engineering HPES NASA Consolidated Active Directory Overview ( August 20, 2012 ) Les Chafin Infrastructure Engineering HPES Introduction Les Chafin; Infrastructure Engineering Manager» HPES NASA ACES Responsible for:»

More information

Splunk for Microsoft Active Directory Domain Services WHITE PAPER

Splunk for Microsoft Active Directory Domain Services WHITE PAPER Splunk for Microsoft Active Directory Domain Services WHITE PAPER Executive Summary Active Directory has become one of the most ubiquitous technologies in enterprise environments with approximately one

More information

AULA EUROPEA DE EMPRESA

AULA EUROPEA DE EMPRESA AULA EUROPEA DE EMPRESA AULA EUROPEA DE EMPRESA Formación Microsoft Primer Cuatrimestre 2014 C/ Méndez Álvaro 56, 28045-Madrid www.aedeibs.com MOC: MICROSOFT OFFICIAL CURRICULUM... 1 Cloud Computing...

More information

Enabling the Business of IT Through Splunk Dashboarding

Enabling the Business of IT Through Splunk Dashboarding Copyright 2015 Splunk Inc. Enabling the Business of IT Through Splunk Dashboarding Don Mahler, Director of Performance Management, Leidos Disclaimer During the course of this presentagon, we may make forward

More information

EquiHealth Dashboard AVImark SQL

EquiHealth Dashboard AVImark SQL EquiHealth Dashboard AVImark SQL Table of Contents Introduction... 3 Installation & Setup... 3 Authentication Configuration... 3 General Settings... 3 Authentication Settings... 3 Connection Settings...

More information

29200 Northwestern Hwy Suite 350 Southfield, MI 48034. 1-866-4WINSPC winspc.com

29200 Northwestern Hwy Suite 350 Southfield, MI 48034. 1-866-4WINSPC winspc.com 29200 Northwestern Hwy Suite 350 Southfield, MI 48034 1-866-4WINSPC winspc.com 2016 DataNet Quality Systems. All rights reserved. WinSPC is a registered trademark of DataNet Quality Systems. Document Version:

More information

Situational Awareness Through Network Visualization

Situational Awareness Through Network Visualization CYBER SECURITY DIVISION 2014 R&D SHOWCASE AND TECHNICAL WORKSHOP Situational Awareness Through Network Visualization Pacific Northwest National Laboratory Daniel M. Best Bryan Olsen 11/25/2014 Introduction

More information

Microsoft Training and Certification Guide. Current as of December 31, 2013

Microsoft Training and Certification Guide. Current as of December 31, 2013 Microsoft Training and Certification Guide Current as of December 31, 2013 Welcome to the Microsoft Training and Certification Guide. This device is intended to provide a quick, comprehensive view of our

More information

HHS Accelerator: Account Creation and Access

HHS Accelerator: Account Creation and Access HHS Accelerator: Account Creation and Access Table of Contents HHS Accelerator System Requirements Overview... 3 HHS Accelerator System Compatible Internet Browsers... 3 Enabling JavaScript... 3 Valid

More information

Enterprise Random Password Manager 4.83.1 Training Guide

Enterprise Random Password Manager 4.83.1 Training Guide Enterprise Random Password Manager 4.83.1 Training Guide Draft Published: January 11, 2011 Updated: February 9, 2011 Summary This guide provides an overview of Enterprise Random Password Manager (ERPM)

More information

Microsoft SharePoint

Microsoft SharePoint Microsoft SharePoint Microsoft SharePoint 2010 Foundation is a software product used for sharing information, and finding and collaborating on information at a specific place or site. SharePoint can be

More information

How To Manage A Data Center Remotely From A Computer Or Network Remotely

How To Manage A Data Center Remotely From A Computer Or Network Remotely Configuring Alert Actions in OpenManage Essentials This Dell technical white paper explains how to configure various alert actions in order to monitor the data center remotely. OME Engineering Team This

More information

Integrating ConnectWise Service Desk Ticketing with the Cisco OnPlus Portal

Integrating ConnectWise Service Desk Ticketing with the Cisco OnPlus Portal Integrating ConnectWise Service Desk Ticketing with the Cisco OnPlus Portal This Application Note explains how to configure ConnectWise PSA (Professional Service Automation) application settings and Cisco

More information

https://webmail.airevac.com *NOTE: There is an s after the http in the above address. Don t forget the s!

https://webmail.airevac.com *NOTE: There is an s after the http in the above address. Don t forget the s! PHI Internet WebMail All employees have been issued a PHI email account. To help us all communicate, we need you to check it! It is expected that you check this email account during each flight shift and

More information

Cloud Services. Sharepoint. Admin Quick Start Guide

Cloud Services. Sharepoint. Admin Quick Start Guide Cloud Services Sharepoint Admin Quick Start Guide 3/12/2015 ACTIVATION An activation letter will be sent to the email account of your administrator contact. SharePoint will be part of your Cloud Control

More information

Fleet Management System FMS. User Manual

Fleet Management System FMS. User Manual Fleet Management System FMS User Manual Page 1 of 21 Disclaimer No part of this publication may be reproduced, or transmitted in any form or by any means without the written permission of Control Module,

More information

Integrate ExtraHop with Splunk

Integrate ExtraHop with Splunk Integrate ExtraHop with Splunk Introduction The ExtraHop system monitors network and application performance by gathering data passively on the network. It offers deep and customizable analytics of wire

More information

Client Monitoring with Microsoft System Center Operations Manager 2007

Client Monitoring with Microsoft System Center Operations Manager 2007 Client Monitoring with Microsoft System Center Operations Manager 2007 Microsoft Corporation Published: December 18, 2006 Updated: December 18, 2006 Executive Summary Client monitoring is a new feature

More information

Implementing Data Models and Reports with Microsoft SQL Server

Implementing Data Models and Reports with Microsoft SQL Server Course 20466C: Implementing Data Models and Reports with Microsoft SQL Server Course Details Course Outline Module 1: Introduction to Business Intelligence and Data Modeling As a SQL Server database professional,

More information

*Not include in promotion. Update 12 November 2014

*Not include in promotion. Update 12 November 2014 ID. MICROSOFT WINDOWS 8 DAYS FEE PRE REQ JAN FEB MAR APR MAY JUN 20687D New! Configuring Windows 8.1 5 20,000 02-06 09-13 11-15 20688D New! Supporting Window 8.1 5 20,000 05-09 16-20 20-24 08-12 20689D

More information

System Center 2012 R2 Lab 5: Application Management

System Center 2012 R2 Lab 5: Application Management System Center 2012 R2 Lab 5: Application Management Hands-On Lab Step-by-Step Guide For the VMs use the following credentials: Username: Contoso\Administrator Password: Passw0rd! Version: 1.5.5 Last updated:

More information

Business Intelligence for Dynamics GP. Presented By: Rob Jackson, Business Intelligence Consultant Brent Keilin, GP Consultant

Business Intelligence for Dynamics GP. Presented By: Rob Jackson, Business Intelligence Consultant Brent Keilin, GP Consultant Business Intelligence for Dynamics GP Presented By: Rob Jackson, Business Intelligence Consultant Brent Keilin, GP Consultant Agenda Business Intelligence Concepts Business Intelligence for GP: Reporting

More information

B2B Quick Start Guide

B2B Quick Start Guide B2B Quick Start Guide Summary: While the look of B2B has changed, the basic operation of the site has stayed the same. You can still log on, view styles, place and view orders and run reports. We have

More information

EVENT LOG MANAGEMENT...

EVENT LOG MANAGEMENT... Event Log Management EVENT LOG MANAGEMENT... 1 Overview... 1 Application Event Logs... 3 Security Event Logs... 3 System Event Logs... 3 Other Event Logs... 4 Windows Update Event Logs... 6 Syslog... 6

More information

Good Guys vs. the Bad Guys: Can Big Data Tools Counteract Advanced Threats?

Good Guys vs. the Bad Guys: Can Big Data Tools Counteract Advanced Threats? Good Guys vs. the Bad Guys: Can Big Data Tools Counteract Advanced Threats? Will Froning, Information Security Manager, American University of Sharjah Mark Seward, Senior Director, Security and Compliance

More information

ManageEngine Desktop Central Training

ManageEngine Desktop Central Training ManageEngine Desktop Central Training Course Objectives Who Should Attend Course Agenda Course Objectives Desktop Central training helps you IT staff learn the features offered by Desktop Central and to

More information

Naverisk 2013 R3 - Road Map

Naverisk 2013 R3 - Road Map Naverisk 2013 R3 - Road Map This document summarizes the new features and enhancements in the 2013 R3 release of Naverisk. Continuing the Naverisk rapid release program, we have taken partner feedback

More information

Course 20489B: Developing Microsoft SharePoint Server 2013 Advanced Solutions OVERVIEW

Course 20489B: Developing Microsoft SharePoint Server 2013 Advanced Solutions OVERVIEW Course 20489B: Developing Microsoft SharePoint Server 2013 Advanced Solutions OVERVIEW About this Course This course provides SharePoint developers the information needed to implement SharePoint solutions

More information

70-243: Administering and Deploying System Center 2012 Configuration Manager. 70-246: Monitoring and Operating a Private Cloud with System Center 2012

70-243: Administering and Deploying System Center 2012 Configuration Manager. 70-246: Monitoring and Operating a Private Cloud with System Center 2012 62-193: Technology Literacy for Educators 70-243: Administering and Deploying System Center 2012 Configuration Manager 70-246: Monitoring and Operating a Private Cloud with System Center 2012 70-247: Configuring

More information

Urchin Demo (12/14/05)

Urchin Demo (12/14/05) Urchin Demo (12/14/05) General Info / FAQs 1. What is Urchin? Regent has purchased a license for Urchin 5 Web Analytics Software. This software is used to analyze web traffic and produce reports on website

More information

DE-20489B Developing Microsoft SharePoint Server 2013 Advanced Solutions

DE-20489B Developing Microsoft SharePoint Server 2013 Advanced Solutions DE-20489B Developing Microsoft SharePoint Server 2013 Advanced Solutions Summary Duration Vendor Audience 5 Days Microsoft Developer Published Level Technology 21 November 2013 300 Microsoft SharePoint

More information