<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
  <channel>
    <image>
      <title>GFI EventsManager Feed</title>
      <url>http://images.gfi.com/gfi_logos/lg_gfi.gif</url>
      <link>http://kbase.gfi.com</link>
    </image>

    <title>GFI EventsManager Feed</title>
    <link>http://kbase.gfi.com</link>
    <description>GFI EventsManager - Network-wide event log management</description>
    <copyright>Copyright 2007. All rights reserved. GFI Software Ltd.</copyright>
    <managingEditor>info@gfi.com (GFI Software Ltd)</managingEditor>
    <ttl>60</ttl>
    <language>en-us</language>

   <item>
    <title>New build of GFI EventsManager ReportPack 8.1 (build 20080627) uploaded</title>
    <description>
     <div xmlns="http://www.w3.org/1999/xhtml">
      <p>
       
A new build of GFI EventsManager ReportPack 8.1 (build 20080627) has been uploaded.

Changes within this release include: 


  FIXED:Issue with displaying SNMP traps critical events
  
  FIXED:Issue withshowing the PCI reports
  
  
      </p>
     </div>
    </description>
    <link>http://kbase.gfi.com/showarticle.asp?id=KBID003354</link>
    <pubDate>Thu, 03 Jul 2008 14:15:41 GMT</pubDate>
    <author></author>
   </item>
  
   <item>
    <title>New build of GFI EventsManager 8.1 (build 20080702) uploaded</title>
    <description>
     <div xmlns="http://www.w3.org/1999/xhtml">
      <p>
       
A new build of GFI EventsManager 8.1 (build 20080702) has been uploaded.

Changes within this service release include: 


  NEW: Reminder-ware and eCommerce integration
  
  NEW: DICR optimizations: (i) Improved quick start dialog (ii) Quick start guides for adding event sources, creating rule and working with database operation (iii) From the reporting page you can download and install the report pack as well as launch open it once it is installed (iv) Improved installation process
  
  NEW: SNMP traps v2 alerting support
  
  NEW: Support for passing field names as parameters in run command actions for rules
  
  FIXED: ESM stops collecting Syslog and w3c events when SQL Audit was not enabled from the license
  
  FIXED: Logging system was enhanced, it doesn't create anymore empty files
  
      </p>
     </div>
    </description>
    <link>http://kbase.gfi.com/showarticle.asp?id=KBID003353</link>
    <pubDate>Thu, 03 Jul 2008 14:09:08 GMT</pubDate>
    <author></author>
   </item>
  
   <item>
    <title>New build of GFI EventsManager 8.1 BETA 1 (build 20080609) uploaded</title>
    <description>
     <div xmlns="http://www.w3.org/1999/xhtml">
      <p>
       
A new build of GFI EventsManager 8.1 BETA 1 (build 20080609) has been uploaded. 

Changes in this build include: 


  List of new features
  
  
    SNMP traps v2 alerting
    
    Support for passing field names as parameters in run command actions for rules
    
    Improved Quick Start Dialog
    
    New Quick Start Guides for adding event sources, creating rules and working with database operations
    
    The GFI EventsManager ReportPack can be downloaded and installed from the reporting page.
    
    Improved installation process
    
  
  List of fixes
  
  
    GFI EventsManager stops collecting Syslog and W3C events when SQL Audit is not licensed
    
    Logging system occasionally creates empty files
    
    Fixed import settings when the database contained null filters
    
      </p>
     </div>
    </description>
    <link>http://kbase.gfi.com/showarticle.asp?id=KBID003345</link>
    <pubDate>Wed, 11 Jun 2008 16:07:38 GMT</pubDate>
    <author></author>
   </item>
  
   <item>
    <title>New build of GFI EventsManager 8 ReportPack (build 20080408) uploaded</title>
    <description>
     <div xmlns="http://www.w3.org/1999/xhtml">
      <p>
       
A new build of GFI EventsManager 8 ReportPack (build 20080408) has been uploaded. 

Changes in this build include: 


  Added support for events 536,537 for logon failure reports (and Vista equivalents). 
    
      Event 536 Logon Failure : Netlogon component is not active 
      
      Event 537 Logon Failure : other reasons.</p>
<p> 
      
    
  
  Added NEW reports for &quot;User Activity&quot; monitoring 
    
      &quot;Failed logon count on each computer&quot; 
      
      &quot;Top 10 accounts which failed to logon&quot;</p>
<p> 
      
    
  
  Ported and integrated the following reports required for compliancy analysis including PCI 
    
      10.2.1 All individual access to cardholder data - when data is stored in files 
      
      10.2.2 All actions taken by any individual with root or administrative privileges 
      
      10.2.3 Access to all audi
      </p>
     </div>
    </description>
    <link>http://kbase.gfi.com/showarticle.asp?id=KBID003329</link>
    <pubDate>Thu, 10 Apr 2008 13:02:49 GMT</pubDate>
    <author></author>
   </item>
  
   <item>
    <title>New service release of GFI EventsManager 8 (build 20080318) uploaded</title>
    <description>
     <div xmlns="http://www.w3.org/1999/xhtml">
      <p>
       
A new service release of GFI EventsManager 8 (build 20080318) has been uploaded. 

Changes in this service release include: 


  NEW: Data can now be backed up from the backup database
  
  FIXED: SNMP and Syslog servers options do not apply properly
  
  FIXED: Rules settings are not imported after upgrading from GFI EventsManager version 7.1
  
  FIXED: Command line tool &quot;Exportdata.exe&quot; does not export &quot;Other events&quot; to file
  
  FIXED: Priority of rules may be lost after importing settings from an older version
  
  FIXED:SNMP and Syslog servers may not start automatically after system reboot
  
  FIXED: Command line tool: importdata.exe does not import data to another database on another server when using /dbname /dbserver parameters
  
  FIXED:
      </p>
     </div>
    </description>
    <link>http://kbase.gfi.com/showarticle.asp?id=KBID003321</link>
    <pubDate>Mon, 24 Mar 2008 13:25:00 GMT</pubDate>
    <author></author>
   </item>
  
   <item>
    <title>New build of GFI EventsManager 8 (build 20080218) uploaded</title>
    <description>
     <div xmlns="http://www.w3.org/1999/xhtml">
      <p>
       
A new build of GFI EventsManager (build 20080218) has been uploaded. 

Changes in this build include: 


  NEW: Extended support for various devices by adding SYSLOG rules for Juniper Networks devices 
  
  NEW: Select all SQL servers option from the Add SQL servers dialog 
  
  NEW: Export query results directly to CSV from event browsers 
  
  NEW: Possibility to filter on Rule Name in reports from Report Pack 
  
  NEW: Comprehensive sets of on SNMP traps and SQL Server Audit filters 
  
  NEW: All the data from SQL server audit columns appear in description panel 
  
  FIXED: Server name does not appear in Database Server Groups after restarting the application (Windows Vista) 
  
  FIXED: SQL Server Audit Browser -&amp;gt; Find Events -&amp;gt; 
      </p>
     </div>
    </description>
    <link>http://kbase.gfi.com/showarticle.asp?id=KBID003305</link>
    <pubDate>Mon, 25 Feb 2008 12:36:28 GMT</pubDate>
    <author></author>
   </item>
  
   <item>
    <title>From which applications and devices can GFI EventsManager process logs?</title>
    <description>
     <div xmlns="http://www.w3.org/1999/xhtml">
      <p>
       
GFI EventsManager 8 supports 4 types of logs, which are Windows event logs, W3C format logs and Syslog messages and SNMP. GFI EventsManager also supports SQL Server auditing. The following are some of the applications and devices from which GFI EventsManager can collect logs:

    
      
    
    
    
    
        
          
            
              Windows events 
              
              Windows events 
              
              
      </p>
     </div>
    </description>
    <link>http://kbase.gfi.com/showarticle.asp?id=KBID003302</link>
    <pubDate>Mon, 18 Feb 2008 13:47:26 GMT</pubDate>
    <author></author>
   </item>
  
   <item>
    <title>How does GFI EventsManager work?</title>
    <description>
     <div xmlns="http://www.w3.org/1999/xhtml">
      <p>
       
The operational functionality of GFI EventsManager is divided into 2 stages: 


  Stage 1: Log Collection 
  
  Stage 2: Log Processing 
  

 

The rest of this article provides a description of the different stages. 

Stage 1: Log Collection 

During the Log Collection stage, GFI EventsManager collects logs from specific event sources. This is achieved through the use of 2 log collection engines: 


  The Event Retrieval Engine 
  
  The Event Receiving Engine 
  

The Event Retrieval Engine 

The Event Retrieval Engine is used to collect Windows event logs and W3C logs from networked event sources. During the Event Collection process this engine will: 


  Log-on to the event source(s) 
  
  Collect events fr
      </p>
     </div>
    </description>
    <link>http://kbase.gfi.com/showarticle.asp?id=KBID003294</link>
    <pubDate>Thu, 31 Jan 2008 17:28:30 GMT</pubDate>
    <author></author>
   </item>
  
  </channel>
 </rss>

