TIBCO LogLogic Reports for ITIL
The following table lists the reports included in theTIBCO LogLogic® Compliance Suite - ITIL Edition.
| Serial Number | TIBCO LogLogic Report | Description |
|---|---|---|
| 1 | ITIL: Active Directory System Changes | Displays changes made within Active Directory. |
| 2 | ITIL: Check Point Configuration Changes | Displays all Check Point audit events related to configuration changes. |
| 3 | ITIL: Cisco ESA: Attacks by Event ID | Displays Cisco ESA attacks by Event ID. |
| 4 | ITIL: Cisco ESA: Attacks Detected | Displays attacks Detected by Cisco ESA. |
| 5 | ITIL: Cisco ESA: Attacks by Threat Name | Displays Cisco ESA attacks by threat name. |
| 6 | ITIL: Cisco ESA: Scans | Displays scans using Cisco ESA. |
| 7 | ITIL: Cisco ESA: Updated | Displays updates to Cisco ESA. |
| 8 | ITIL: Cisco ISE, ACS Configuration Changes | Displays Cisco ISE and Cisco SecureACS configuration changes. |
| 9 | ITIL: Cisco PIX, ASA, FWSM Failover Disabled | Displays all logs related to disabling Cisco PIX, ASA, and FWSM failover capability. |
| 10 | ITIL: Cisco PIX, ASA, FWSM Failover Errors | Displays events indicating the PIX, ASA, and FWSM devices have failover errors. |
| 11 | ITIL: Cisco PIX, ASA, FWSM Failover Performed | Displays all logs related to performing a Cisco PIX, ASA, and FWSM failover. |
| 12 | ITIL: Cisco PIX, ASA, FWSM Policy Changed | Displays all configuration changes made to the Cisco PIX, ASA, and FWSM devices. |
| 13 | ITIL: Cisco PIX, ASA, FWSM Restarted | Displays all Cisco PIX, ASA, or FWSM restart activities to detect unusual activities. |
| 14 | ITIL: Cisco PIX, ASA, FWSM Routing Failure | Displays all Cisco PIX, ASA, and FWSM routing error messages. |
| 15 | ITIL: Cisco Routers and Switches Restart | Displays all Cisco routers and switches restart activities to detect unusual activities. |
| 16 | ITIL: Cisco Switch Interface Down | Displays events indicating the Cisco Switches' interface has gone down. |
| 17 | ITIL: Cisco Switch Interface Up | Displays events indicating the Cisco Switches' interface has gone up. |
| 18 | ITIL: Cisco Switch Policy Changes | Displays all configuration changes to the Cisco router and switch policies. |
| 19 | ITIL: DHCP Granted/Renewed Activities on Microsoft DHCP | Displays all DHCP Granted/Renewed activities on Microsoft DHCP Server. |
| 20 | ITIL: DHCP Granted/Renewed Activities on VMware vShield | Displays all DHCP Granted/Renewed activities on VMware vShield Edge. |
| 21 | ITIL: DNS Server Error | Displays all events when DNS Server has errors. |
| 22 | ITIL: Domain activities on Symantec Endpoint Protection | Displays all domain activities on Symantec Endpoint Protection. |
| 23 | ITIL: Domains Sending the Most Email - Exchange 2000/2003 | Displays the top domains sending email. |
| 24 | ITIL: Email Domains Experiencing Delay - Exchange 2000/2003 | Displays the recipient domains that have experienced the most delivery delays. |
| 25 | ITIL: Email Recipients Receiving the Most Emails by Count - Exchange 2007/10 | Displays the email recipients who receiving the most emails by count. |
| 26 | ITIL: Email Senders Sending the Most Emails by Count - Exchange 2007/10 | Displays the email senders who sent the most emails by count. |
| 27 | ITIL: Email Source IP Sending to Most Recipients | Displays IP addresses that are sending to the most recipients using Exchange 2007/10. |
| 28 | ITIL: ESX Kernel log daemon terminating | Displays all VMware ESX Kernel log daemon terminating. |
| 29 | ITIL: ESX Kernel logging Stop | Displays all VMware ESX Kernel logging stops. |
| 30 | ITIL: ESX Syslogd Restart | Displays all VMware ESX syslogd restarts. |
| 31 | ITIL: F5 BIG-IP TMOS Restarted | Displays all events when the F5 BIG-IP TMOS has been restarted. |
| 32 | ITIL: Firewall Traffic by Rule - Check Point | Displays all network traffic flowing through each rule in a network policy to ensure appropriate access. |
| 33 | ITIL: FireEye MPS: Attacks by Event ID | Displays FireEye MPS attacks by Event ID. |
| 34 | ITIL: FireEye MPS: Attacks by Threat Name | Displays FireEye MPS attacks by threat name. |
| 35 | ITIL: FireEye MPS: Attacks Detected | Displays attacks detected by FireEye MPS. |
| 36 | ITIL: Firewall Traffic by Rule - Juniper Firewall | Displays all network traffic flowing through each rule in a network policy to ensure appropriate access. |
| 37 | ITIL: Firewall Traffic by Rule - Nortel | Displays all network traffic flowing through each rule in a network policy to ensure appropriate access. |
| 38 | ITIL: FortiOS: Attacks by Event ID | Displays FortiOS attacks by Event ID. |
| 39 | ITIL: FortiOS: Attacks by Threat Name | Displays FortiOS attacks by threat name. |
| 40 | ITIL: FortiOS: Attacks Detected | Displays attacks detected by FortiOS. |
| 41 | ITIL: FortiOS DLP Attacks Detected | Displays all DLP attacks detected by FortiOS. |
| 42 | ITIL: HP NonStop Audit Configuration Changes | Displays all audit configuration changes on HP NonStop. |
| 43 | ITIL: HP NonStop Audit Login Failed | Displays all HP NonStop Audit login events which have failed. |
| 44 | ITIL: HP NonStop Audit Object Changes | Displays HP NonStop Audit events related to object changes. |
| 45 | ITIL: HP NonStop Audit Permissions Changed | Displays all permission modification activities on HP NonStop Audit to ensure authorized access. |
| 46 | ITIL: i5/OS Backup Configuration Changes | Lists all events when the i5/OS backup options have been modified. |
| 47 | ITIL: i5/OS Object Permissions Modified | Displays all permission modification activities on i5/OS to ensure authorized access. |
| 48 | ITIL: i5/OS Restarted | Lists all events when the i5/OS has been restarted. |
| 49 | ITIL: i5/OS Service Started | Lists all events when a user starts a service on the i5/OS. |
| 50 | ITIL: Juniper Firewall Restarted | Displays all Juniper Firewall restart events. |
| 51 | ITIL: Juniper Firewall HA State Changed | Displays all Juniper firewall fail-over state change events. |
| 52 | ITIL: Juniper Firewall Policy Changed | Displays all configuration changes to the Juniper Firewall policies. |
| 53 | ITIL: Juniper Firewall Policy Out of Sync | Displays events that indicate the Juniper Firewall's HA policies are out of sync. |
| 54 | ITIL: Juniper Firewall Reset Accepted | Displays events that indicate the Juniper Firewall has been reset to its factory default state. |
| 55 | ITIL: Juniper Firewall Reset Imminent | Displays events that indicate the Juniper Firewall will be reset to its factory default state. |
| 56 | ITIL: LogLogic Disk Full | Displays events that indicate the LogLogic appliance's disk is near full. |
| 57 | ITIL: LogLogic HA State Changed | Displays all LogLogic appliance failover state change events. |
| 58 | ITIL: LogLogic Management Center Backup Activities | Displays all backup activities on LogLogic management center. |
| 59 | ITIL: LogLogic Management Center Restore Activities | Displays all restore activities on LogLogic management center. |
| 60 | ITIL: LogLogic Management Center Upgrade Success | Displays all successful events related to the system's upgrade. |
| 61 | ITIL: LogLogic Universal Collector Configuration Changes | Displays LogLogic universal collector configuration changes. |
| 62 | ITIL: Microsoft Operations Manager - Windows Permissions Modified | Displays all permission modification activities on Windows servers to ensure authorized access. |
| 63 | ITIL: Microsoft Operations Manager - Windows Policies Modified | Displays all policy modification activities on Windows servers to ensure authorized and appropriate access. |
| 64 | ITIL: Microsoft Operations Manager - Windows Servers Restarted | Displays all Windows server restart activities to detect unusual activities. |
| 65 | ITIL: Microsoft Sharepoint Permissions Changed | Displays all user/group permission events to Microsoft Sharepoint. |
| 66 | ITIL: Microsoft Sharepoint Policy Add, Remove, or Modify | Displays all events when a Microsoft Sharepoint policy is added, removed, or modified. |
| 67 | ITIL: Most Active Ports Through Firewall - Check Point | Displays the most active ports used through the Check Point firewall. |
| 68 | ITIL: Most Active Ports Through Firewall - Cisco ASA | Displays the most active ports used through the Cisco ASA firewall. |
| 69 | ITIL: Most Active Ports Through Firewall - Cisco FWSM | Displays the most active ports used through the Cisco FWSM firewall. |
| 70 | ITIL: Most Active Ports Through Firewall - Cisco Netflow | Displays the most active ports used through the Cisco Netflow. |
| 71 | ITIL: Most Active Ports Through Firewall - Cisco PIX | Displays the most active ports used through the Cisco PIX firewall. |
| 72 | ITIL: Most Active Ports Through Firewall - Fortinet | Displays the most active ports used through the Fortinet firewall. |
| 73 | ITIL: Most Active Ports Through Firewall - Juniper Firewall | Displays the most active ports used through the Juniper firewall. |
| 74 | ITIL: Most Active Ports Through Firewall - Nortel | Displays the most active ports used through the Nortel firewall. |
| 75 | ITIL: Most Active Ports Through Firewall - PANOS | Displays the most active ports used through the PANOS firewall. |
| 76 | ITIL: McAfee AntiVirus: Attacks by Event ID | Displays McAfee AntiVirus attacks by Event ID. |
| 77 | ITIL: McAfee AntiVirus: Attacks by Threat Name | Displays McAfee AntiVirus attacks by threat name. |
| 78 | ITIL: McAfee AntiVirus: Attacks Detected | Displays attacks detected by McAfee AntiVirus. |
| 79 | ITIL: NetApp Filer Audit Login Failed | Displays all NetApp Filer Audit Login events which have failed. |
| 80 | ITIL: NetApp Filer Audit Policies Modified | Displays all policy modification activities on NetApp Filer Audit to ensure authorized and appropriate access. |
| 81 | ITIL: NetApp Filer Boot Block Updated | Displays all events indicating that the boot block has been updated on the NetApp Filer. |
| 82 | ITIL: NetApp Filer Disk Failure | Displays all disk failure events on the NetApp Filer servers. |
| 83 | ITIL: NetApp Filer Login Failed | Displays all NetApp Filer Login events which have failed. |
| 84 | ITIL: NetApp Filer Disk Missing | Displays events that indicate disk missing on the NetApp Filer servers. |
| 85 | ITIL: NetApp Filer File System Full | Displays events that indicate the NetApp Filer's disk is near full. |
| 86 | ITIL: NetApp Filer RAID Disk Inserted | Displays all events related to disk insertion into the NetApp Filer RAID. |
| 87 | ITIL: NetApp Filer RAID Disk Pulled | Displays all events related to disk removal into the NetApp Filer RAID. |
| 88 | ITIL: NetApp Filer Snapshot Error | Displays events that indicate backup on the NetApp Filer has failed. |
| 89 | ITIL: NTP Daemon Exited | Displays events that indicate the NTP service has stopped. |
| 90 | ITIL: NTP Server Unreachable | Displays events that indicate the remote NTP server is not reachable. |
| 91 | ITIL: PANOS: Attacks by Event ID | Displays Palo Alto Networks attacks by Event ID. |
| 92 | ITIL: PANOS: Attacks by Threat Name | Displays Palo Alto Networks attacks by threat name. |
| 93 | ITIL: PANOS: Attacks Detected | Displays attacks detected by Palo Alto Networks. |
| 94 | ITIL: Periodic Review of Log Reports | Displays all review activities performed by administrators to ensure review for any access violations. |
| 95 | ITIL: Permissions Modified on Windows Servers | Displays all permission modification activities on Windows servers to ensure authorized access. |
| 96 | ITIL: Policies Modified on Windows Servers | Displays all policy modification activities on Windows servers to ensure authorized and appropriate access. |
| 97 | ITIL: RACF Permissions Changed | Displays all permission modification activities on RACF to ensure authorized access. |
| 98 | ITIL: RACF Process Started | Displays all processes started on the RACF servers. |
| 99 | ITIL: Software Update Successes on i5/OS | Displays all i5/OS successful events related to the system's software or patch update. |
| 100 | ITIL: Symantec AntiVirus: Attacks by Threat Name | Displays Symantec AntiVirus attacks by threat name. |
| 101 | ITIL: Symantec AntiVirus: Attacks Detected | Displays attacks detected by Symantec AntiVirus. |
| 102 | ITIL: Symantec AntiVirus: Scans | Displays scans using Symantec AntiVirus. |
| 103 | ITIL: Symantec AntiVirus: Updated | Displays updates to Symantec AntiVirus. |
| 104 | ITIL: Symantec Endpoint Protection: Attacks by Threat Name | Displays Symantec Endpoint Protection attacks by threat name. |
| 105 | ITIL: Symantec Endpoint Protection: Attacks Detected | Displays attacks detected by Symantec Endpoint Protection. |
| 106 | ITIL: Symantec Endpoint Protection Configuration Changes | Displays Symantec Endpoint Protection configuration changes. |
| 107 | ITIL: Symantec Endpoint Protection Policy Add, Remove, or Modify | Displays all events when a Symantec Endpoint Protection policy is added, removed, or modified. |
| 108 | ITIL: Symantec Endpoint Protection: Scans | Displays scans using Symantec Endpoint Protection. |
| 109 | ITIL: Symantec Endpoint Protection: Updated | Displays updates to Symantec Endpoint Protection. |
| 110 | ITIL: System Restarted | Displays all logs related to system restarts. |
| 111 | ITIL: TIBCO Administrator Login Failed | Displays all TIBCO Administrator Login events which have failed. |
| 112 | ITIL: TIBCO ActiveMatrix Administrator Failed Logins | Displays all TIBCO ActiveMatrix Administrator Login events which have failed. |
| 113 | ITIL: TIBCO Administrator Permission Changes | Displays events related to TIBCO Administrator permission modifications. |
| 114 | ITIL: TIBCO ActiveMatrix Administrator Permission Changes | Displays events related to TIBCO ActiveMatrix Administrator permission modifications. |
| 115 | ITIL: TrendMicro OfficeScan: Attacks Detected | Displays attacks detected by TrendMicro OfficeScan. |
| 116 | ITIL: TrendMicro OfficeScan: Attacks Detected by Threat Name | Displays attacks detected by TrendMicro OfficeScan by threat name. |
| 117 | ITIL: TrendMicro Control Manager: Attacks Detected | Displays attacks detected by TrendMicro Control Manager. |
| 118 | ITIL: TrendMicro Control Manager: Attacks Detected by Threat Name | Displays attacks detected by TrendMicro Control Manager by threat name. |
| 119 | ITIL: UNIX Failed Logins | Displays failed UNIX logins for known and unknown users. |
| 120 | ITIL: vCenter Change Attributes | Modification of VMware vCenter and VMware ESX properties. |
| 121 | ITIL: vCenter Modify Firewall Policy | Displays changes to the VMware ESX allowed services firewall policy. |
| 122 | ITIL: vCenter Orchestrator Change Attributes | Modification of VMware vCenter Orchestrator properties. |
| 123 | ITIL: vCenter Orchestrator Virtual Machine Created | Virtual machine has been created from VMware vCenter Orchestrator. |
| 124 | ITIL: vCenter Orchestrator Virtual Machine Deleted | Virtual machine has been deleted from VMware vCenter Orchestrator. |
| 125 | ITIL: vCenter Orchestrator Virtual Machine Shutdown | Virtual machine has been shutdown or paused from VMware vCenter Orchestrator console. |
| 126 | ITIL: vCenter Orchestrator Virtual Machine Started | Virtual machine has been started or resumed from VMware vCenter Orchestrator console. |
| 127 | ITIL: vCenter Orchestrator vSwitch Added, Changed or Removed | vSwitch has been added, modified or removed from VMware vCenter Orchestrator console. |
| 128 | ITIL: vCenter Resource Usage Change | Resources have changed on VMware vCenter. |
| 129 | ITIL: vCenter Restart ESX Services | VMware vCenter restarted services running on VMware ESX Server. |
| 130 | ITIL: vCenter Shutdown or Restart of ESX Server | VMware ESX Server is shutdown or restarted from VMware vCenter console. |
| 131 | ITIL: vCenter User Permission Change | A permission role has been added, changed, removed, or applied to a user on VMware vCenter server. |
| 132 | ITIL: vCenter Virtual Machine Created | Virtual machine has been created from VMware vCenter console. |
| 133 | ITIL: vCenter Virtual Machine Deleted | Virtual machine has been deleted or removed from VMware vCenter console. |
| 134 | ITIL: vCenter Virtual Machine Shutdown | Virtual machine has been shutdown or paused from VMware vCenter console. |
| 135 | ITIL: vCenter Virtual Machine Started | Virtual machine has been started or resumed from VMware vCenter console. |
| 136 | ITIL: vCenter vSwitch Added, Changed or Removed | vSwitch on VMware ESX server has been added, modified or removed from the VMware vCenter console. |
| 137 | ITIL: vCloud Organization Created | VMware vCloud Director organization created events. |
| 138 | ITIL: vCloud Organization Deleted | VMware vCloud Director organization deleted events. |
| 139 | ITIL: vCloud Organization Modified | VMware vCloud Director organization modified events. |
| 140 | ITIL: vCloud vApp Created, Modified, or Deleted | VMware vCloud Director vApp created, deleted, and modified events. |
| 141 | ITIL: vCloud vDC Created, Modified, or Deleted | VMware vCloud Director virtual datacenter created, modified, or deleted events. |
| 142 | ITIL: VPN Connection Average Bandwidth | Displays the average bandwidth for VPN connections. |
| 143 | ITIL: VPN Connection Average Duration | Displays the average duration of VPN connections. |
| 144 | ITIL: vShield Edge Configuration Changes | Displays changes to VMware vShield Edge policies. |
| 145 | ITIL: Web URLs Visited | Displays URLs that have been visited. |
| 146 | ITIL: Web URLs Visited - F5 BIG-IP TMOS | Displays URLs that have been visited on F5 BIG-IP TMOS. |
| 147 | ITIL: Web URLs Visited - Fortinet | Displays URLs that have been visited on Fortinet. |
| 148 | ITIL: Web URLs Visited - Microsoft IIS | Displays URLs that have been visited on Microsoft IIS. |
| 149 | ITIL: Web URLs Visited - PANOS | Displays URLs that have been visited on Palo Alto Networks. |
| 150 | ITIL: Web URLs Visited via Proxy | Displays URLs that have been visited via a proxy server. |
| 151 | ITIL: Web URLs Visited via Proxy - Blue Coat Proxy | Displays URLs that have been visited via a proxy server on Blue Coat Proxy. |
| 152 | ITIL: Web URLs Visited via Proxy - Cisco WSA | Displays URLs that have been visited via a proxy server on Cisco WSA. |
| 153 | ITIL: Web URLs Visited via Proxy - Microsoft IIS | Displays URLs that have been visited via a proxy server on Microsoft IIS. |
| 154 | ITIL: Windows AD Backup Error | Displays events indicating that Windows AD backup has errors. |
| 155 | ITIL: Windows AD Backup Failed | Displays events indicating that Windows AD backup has failed. |
| 156 | ITIL: Windows AD Backup Starting | Displays events indicating that Windows AD backup has started. |
| 157 | ITIL: Windows AD Exception Errors | Displays exception errors from Windows Active Directory. |
| 158 | ITIL: Windows AD Replication Error | Displays replication errors for Windows Active Directory. |
| 159 | ITIL: Windows AD Restore Failed | Displays events indicating restore of the Windows AD database has failed. |
| 160 | ITIL: Windows AD Startup | Displays events related to the start up of Windows Active Directory. |
| 161 | ITIL: Windows AD Unable to Recover | Displays events indicating Windows AD has errored and cannot recover. |
| 162 | ITIL: Windows Domain Activities | Displays all trusted domains created or deleted on Windows servers to ensure authorized and appropriate access. |
| 163 | ITIL: Windows New Services Installed | Displays a list of new services installed on Windows servers to ensure authorized access. |
| 164 | ITIL: Windows Servers Restarted | Displays all Windows server restart activities to detect unusual activities. |
| 165 | ITIL: Windows Software Update Failures | Displays all failed events related to the system's software or patch update. |
| 166 | ITIL: Windows Software Update Successes | Displays all successful events related to the system's software or patch update. |
Copyright © Cloud Software Group, Inc. All rights reserved.
