Novell SENTINEL LOG MANAGER 1.0.0.4 - S Release Note Download Page 2

2

Novell Sentinel Log Manager 1.0.0.4 Release Notes

n

ov

do

cx (e

n)

  22
 Ju

n

e 20
09

Start and stop the audit and syslog event source server by using the new 

Event Source Server

tab.

Set the time zone for event sources.

Search for events that are coming from one or many event sources.

For more information about data collection configuration, see “

Configuring Data Collection

” in the 

Novell Sentinel Log Manager 1.0.0.4 Administration Guide

.

1.1.2  LDAP Authentication

Sentinel Log Manager now supports LDAP authentication in addition to the database authentication. 

A new 

Authentication Type

 option has been added in the 

user

 > 

Add a user

 window of the Sentinel 

Log Manager, which enables you to create user accounts that use LDAP authentication.

For more information about configuring the Sentinel Log Manager server for LDAP authentication, 
see “

User Administration

” in the 

Novell Sentinel Log Manager 1.0.0.4 Administration Guide

.

1.1.3  Enhancements to the Search Result User Interface

The enhanced search result interface enables you to perform several new tasks:

Export search report results.

Send search results to an action.

Download the raw data files for the selected event result's event source by using the 

get raw 

data

 link.

View new event fields information in the search results.
For example, it displays the Source IP address, Rawdata Record ID, Collector Script, Collector 
name, Collector Manager ID, Connector ID, and Event Source ID information for the incoming 
events.

View all the event fields information for the event source by using the 

show all fields

 link.

For more information about searching events and generating reports, see “

Searching

” in the 

Novell 

Sentinel Log Manager 1.0.0.4 Administration Guide

.

1.1.4  New User Interface for Actions

The new user interface for actions allows you to create multiple action instances that you can also 
use while configuring rules. You can also view the number of rules that are associated with an 
action.

For more information about configuring rules and actions, see “

Configuring Rules

” in the 

Novell 

Sentinel Log Manager 1.0.0.4 Administration Guide

.

1.1.5  Enhancement to the Admin User Interface

The new admin user interface enables you to assign new permissions for a user:

You can now allow users to view all reports that are stored on the server

Enable Sentinel Log Manager configuration reporting 

You can now set a filter for the events a user can view. 

Summary of Contents for SENTINEL LOG MANAGER 1.0.0.4 - S

Page 1: ...ation on page 5 Section 5 Issues Fixed on page 7 Section 6 Known Issues on page 14 Section 7 Documentation Conventions on page 18 Section 8 Legal Notices on page 18 1 What s New in Novell Sentinel Log...

Page 2: ...ults to an action Download the raw data files for the selected event result s event source by using the get raw data link View new event fields information in the search results For example it display...

Page 3: ...Syslog and Novell Audit connectivity to make it even easier to start collecting logs from event sources You can direct all the logs to Sentinel Log Manager Messages from recognized data sources are pa...

Page 4: ...ww novell com documentation novelllogmanager10 novell_log_manager data bjx8zq7 html in the Novell Sentinel Log Manager Guide For more information about data storage configuration see Configuring Data...

Page 5: ...t of Sentinel Log Managers complete logs can be retained at multiple regional locations while more important events are forwarded to a single Sentinel Log Manager for centralized search and reporting...

Page 6: ...the installer SENTINEL_LOG_MANAGER_1 0 0 4 zip to a temporary directory 3 Change to the temporary directory 4 Unzip the install package by using the following command unzip SENTINEL_LOG_MANAGER_1 0 0...

Page 7: ...Manager 1 0 0 3 Release on page 9 Section 5 3 Issues Fixed in Sentinel Log Manager 1 0 0 2 Release on page 11 Section 5 4 Issues Fixed in Sentinel Log Manager 1 0 0 1 Release on page 11 5 1 Issues Fix...

Page 8: ...earch tab with the search criteria of a previous search rather than the currently typed in search Fixed The new search tab now always has the most recently typed in search criteria Issues Fixed Descri...

Page 9: ...ils had default subject value Fixed Now you can specify a subject line using the Subject field in the Send an Email action user interface 530183 Issue The number of records value that went into a coll...

Page 10: ...s in an error on the server that prevents any users from logging into the Web interface or ESM user interface Fixed The bug is fixed so that all valid filters are now accepted and evaluated properly F...

Page 11: ...ixed IndexedLogComponent will now shutdown gracefully under heavy load 540119 Issue When the Sentinel Log Manager Server runs for many days for example 25 40 days it stores huge amount of EPS data whi...

Page 12: ...is cached on the Collector Manager file system Fixed The communication links between the Sentinel Log Manager server and either Tomcat or Collector Managers recovers even when the link is dropped tem...

Page 13: ...e the following command Installation_Directory bin server sh restart 522907 Issue On deleting a data retention policy an unnecessary exception is logged if the policy has events that match the specifi...

Page 14: ...curs in the Tomcat server related to the Data Collector Events Per Second chart Fixed The out of memory issue conditions has been fixed when generating this chart 501503 Issue The start_tomcat sh scri...

Page 15: ...this issue is fixed 524473 Issue The prompt for using the 90 day evaluation license is not localized in non English versions of the product 521942 Issue If many reports are run within a sort period o...

Page 16: ...4 Specify the command to change directory cd opt novell sentinel_log_mgr_1 0_x86 64 config 5 hostname f make sure a valid hostname is returned if not fix hostname NOTE All passwords must remain set t...

Page 17: ...ription 524664 Issue Queue full condition might cause unpredictable behavior If a queue size limit is set for the Integrator and the queue is full and the Integrator configuration specifies that the o...

Page 18: ...ntegrator starts a background thread is also started to process this Workaround If Integrator is not sending events either because no events are happening or events are being filtered by rules you mus...

Page 19: ...eliverables for prohibited nuclear missile or chemical biological weaponry end uses Please refer to the Novell International Trade Services Web page http www novell com info exports for more informati...

Reviews: