For which applications and devices does GFI EventsManager provide pre-configured processing rules?

The information in this article applies to:

  • GFI EventsManager 7
  • GFI EventsManager 8

Article ID: KBID002868

Query keywords: Event logs, SNMP, Syslog, W3C

GFI EventsManager contains a default set of processing rules which can be used to filter logs collected from a variety of sources. The following is the list of applications and devices which can be filtered using the rules supplied with GFI EventsManager: 
 

System System Versions/Models
Windows Operating Systems Windows 2000 SP 4 and above
Windows Servers Windows 2000 SP 4 and above
Microsoft SQL Server Version 7 and above for Microsoft Event logs, Version 2000 and above for SQL audits
Microsoft IIS Version 5.0 and above
Microsoft ISA Server Version 2000 and above
Microsoft Exchange Server Version 5.5 and above
Linux/Unix Operating Systems Any with Syslog capabilities
Cisco PIX & ASA devices The rules built on devices using software version 7.2, however older versions are also supported through minor modifications in the processing rules.
Cisco Catalyst family/span> IOS versions
Allied Telesis AR-700 family All
Juniper Networks devices All devices which support NetScreen integration

 

Note:

 

Any application or device not listed above which supports Windows event logs, W3C logs, Syslog or SNMP traps can still be filtered through GFI EventsManager by defining custom processing rules.