TIBCO LogLogic Reports for ITIL
The following table lists the reports included in theTIBCO LogLogic® Compliance Suite - ITIL Edition.
| Serial Number | TIBCO LogLogic Report | Description | 
|---|---|---|
| 1 | ITIL: Active Directory System Changes | Displays changes made within Active Directory. | 
| 2 | ITIL: Check Point Configuration Changes | Displays all Check Point audit events related to configuration changes. | 
| 3 | ITIL: Cisco ESA: Attacks by Event ID | Displays Cisco ESA attacks by Event ID. | 
| 4 | ITIL: Cisco ESA: Attacks Detected | Displays attacks Detected by Cisco ESA. | 
| 5 | ITIL: Cisco ESA: Attacks by Threat Name | Displays Cisco ESA attacks by threat name. | 
| 6 | ITIL: Cisco ESA: Scans | Displays scans using Cisco ESA. | 
| 7 | ITIL: Cisco ESA: Updated | Displays updates to Cisco ESA. | 
| 8 | ITIL: Cisco ISE, ACS Configuration Changes | Displays Cisco ISE and Cisco SecureACS configuration changes. | 
| 9 | ITIL: Cisco PIX, ASA, FWSM Failover Disabled | Displays all logs related to disabling Cisco PIX, ASA, and FWSM failover capability. | 
| 10 | ITIL: Cisco PIX, ASA, FWSM Failover Errors | Displays events indicating the PIX, ASA, and FWSM devices have failover errors. | 
| 11 | ITIL: Cisco PIX, ASA, FWSM Failover Performed | Displays all logs related to performing a Cisco PIX, ASA, and FWSM failover. | 
| 12 | ITIL: Cisco PIX, ASA, FWSM Policy Changed | Displays all configuration changes made to the Cisco PIX, ASA, and FWSM devices. | 
| 13 | ITIL: Cisco PIX, ASA, FWSM Restarted | Displays all Cisco PIX, ASA, or FWSM restart activities to detect unusual activities. | 
| 14 | ITIL: Cisco PIX, ASA, FWSM Routing Failure | Displays all Cisco PIX, ASA, and FWSM routing error messages. | 
| 15 | ITIL: Cisco Routers and Switches Restart | Displays all Cisco routers and switches restart activities to detect unusual activities. | 
| 16 | ITIL: Cisco Switch Interface Down | Displays events indicating the Cisco Switches' interface has gone down. | 
| 17 | ITIL: Cisco Switch Interface Up | Displays events indicating the Cisco Switches' interface has gone up. | 
| 18 | ITIL: Cisco Switch Policy Changes | Displays all configuration changes to the Cisco router and switch policies. | 
| 19 | ITIL: DHCP Granted/Renewed Activities on Microsoft DHCP | Displays all DHCP Granted/Renewed activities on Microsoft DHCP Server. | 
| 20 | ITIL: DHCP Granted/Renewed Activities on VMware vShield | Displays all DHCP Granted/Renewed activities on VMware vShield Edge. | 
| 21 | ITIL: DNS Server Error | Displays all events when DNS Server has errors. | 
| 22 | ITIL: Domain activities on Symantec Endpoint Protection | Displays all domain activities on Symantec Endpoint Protection. | 
| 23 | ITIL: Domains Sending the Most Email - Exchange 2000/2003 | Displays the top domains sending email. | 
| 24 | ITIL: Email Domains Experiencing Delay - Exchange 2000/2003 | Displays the recipient domains that have experienced the most delivery delays. | 
| 25 | ITIL: Email Recipients Receiving the Most Emails by Count - Exchange 2007/10 | Displays the email recipients who receiving the most emails by count. | 
| 26 | ITIL: Email Senders Sending the Most Emails by Count - Exchange 2007/10 | Displays the email senders who sent the most emails by count. | 
| 27 | ITIL: Email Source IP Sending to Most Recipients | Displays IP addresses that are sending to the most recipients using Exchange 2007/10. | 
| 28 | ITIL: ESX Kernel log daemon terminating | Displays all VMware ESX Kernel log daemon terminating. | 
| 29 | ITIL: ESX Kernel logging Stop | Displays all VMware ESX Kernel logging stops. | 
| 30 | ITIL: ESX Syslogd Restart | Displays all VMware ESX syslogd restarts. | 
| 31 | ITIL: F5 BIG-IP TMOS Restarted | Displays all events when the F5 BIG-IP TMOS has been restarted. | 
| 32 | ITIL: Firewall Traffic by Rule - Check Point | Displays all network traffic flowing through each rule in a network policy to ensure appropriate access. | 
| 33 | ITIL: FireEye MPS: Attacks by Event ID | Displays FireEye MPS attacks by Event ID. | 
| 34 | ITIL: FireEye MPS: Attacks by Threat Name | Displays FireEye MPS attacks by threat name. | 
| 35 | ITIL: FireEye MPS: Attacks Detected | Displays attacks detected by FireEye MPS. | 
| 36 | ITIL: Firewall Traffic by Rule - Juniper Firewall | Displays all network traffic flowing through each rule in a network policy to ensure appropriate access. | 
| 37 | ITIL: Firewall Traffic by Rule - Nortel | Displays all network traffic flowing through each rule in a network policy to ensure appropriate access. | 
| 38 | ITIL: FortiOS: Attacks by Event ID | Displays FortiOS attacks by Event ID. | 
| 39 | ITIL: FortiOS: Attacks by Threat Name | Displays FortiOS attacks by threat name. | 
| 40 | ITIL: FortiOS: Attacks Detected | Displays attacks detected by FortiOS. | 
| 41 | ITIL: FortiOS DLP Attacks Detected | Displays all DLP attacks detected by FortiOS. | 
| 42 | ITIL: HP NonStop Audit Configuration Changes | Displays all audit configuration changes on HP NonStop. | 
| 43 | ITIL: HP NonStop Audit Login Failed | Displays all HP NonStop Audit login events which have failed. | 
| 44 | ITIL: HP NonStop Audit Object Changes | Displays HP NonStop Audit events related to object changes. | 
| 45 | ITIL: HP NonStop Audit Permissions Changed | Displays all permission modification activities on HP NonStop Audit to ensure authorized access. | 
| 46 | ITIL: i5/OS Backup Configuration Changes | Lists all events when the i5/OS backup options have been modified. | 
| 47 | ITIL: i5/OS Object Permissions Modified | Displays all permission modification activities on i5/OS to ensure authorized access. | 
| 48 | ITIL: i5/OS Restarted | Lists all events when the i5/OS has been restarted. | 
| 49 | ITIL: i5/OS Service Started | Lists all events when a user starts a service on the i5/OS. | 
| 50 | ITIL: Juniper Firewall Restarted | Displays all Juniper Firewall restart events. | 
| 51 | ITIL: Juniper Firewall HA State Changed | Displays all Juniper firewall fail-over state change events. | 
| 52 | ITIL: Juniper Firewall Policy Changed | Displays all configuration changes to the Juniper Firewall policies. | 
| 53 | ITIL: Juniper Firewall Policy Out of Sync | Displays events that indicate the Juniper Firewall's HA policies are out of sync. | 
| 54 | ITIL: Juniper Firewall Reset Accepted | Displays events that indicate the Juniper Firewall has been reset to its factory default state. | 
| 55 | ITIL: Juniper Firewall Reset Imminent | Displays events that indicate the Juniper Firewall will be reset to its factory default state. | 
| 56 | ITIL: LogLogic Disk Full | Displays events that indicate the LogLogic appliance's disk is near full. | 
| 57 | ITIL: LogLogic HA State Changed | Displays all LogLogic appliance failover state change events. | 
| 58 | ITIL: LogLogic Management Center Backup Activities | Displays all backup activities on LogLogic management center. | 
| 59 | ITIL: LogLogic Management Center Restore Activities | Displays all restore activities on LogLogic management center. | 
| 60 | ITIL: LogLogic Management Center Upgrade Success | Displays all successful events related to the system's upgrade. | 
| 61 | ITIL: LogLogic Universal Collector Configuration Changes | Displays LogLogic universal collector configuration changes. | 
| 62 | ITIL: Microsoft Operations Manager - Windows Permissions Modified | Displays all permission modification activities on Windows servers to ensure authorized access. | 
| 63 | ITIL: Microsoft Operations Manager - Windows Policies Modified | Displays all policy modification activities on Windows servers to ensure authorized and appropriate access. | 
| 64 | ITIL: Microsoft Operations Manager - Windows Servers Restarted | Displays all Windows server restart activities to detect unusual activities. | 
| 65 | ITIL: Microsoft Sharepoint Permissions Changed | Displays all user/group permission events to Microsoft Sharepoint. | 
| 66 | ITIL: Microsoft Sharepoint Policy Add, Remove, or Modify | Displays all events when a Microsoft Sharepoint policy is added, removed, or modified. | 
| 67 | ITIL: Most Active Ports Through Firewall - Check Point | Displays the most active ports used through the Check Point firewall. | 
| 68 | ITIL: Most Active Ports Through Firewall - Cisco ASA | Displays the most active ports used through the Cisco ASA firewall. | 
| 69 | ITIL: Most Active Ports Through Firewall - Cisco FWSM | Displays the most active ports used through the Cisco FWSM firewall. | 
| 70 | ITIL: Most Active Ports Through Firewall - Cisco Netflow | Displays the most active ports used through the Cisco Netflow. | 
| 71 | ITIL: Most Active Ports Through Firewall - Cisco PIX | Displays the most active ports used through the Cisco PIX firewall. | 
| 72 | ITIL: Most Active Ports Through Firewall - Fortinet | Displays the most active ports used through the Fortinet firewall. | 
| 73 | ITIL: Most Active Ports Through Firewall - Juniper Firewall | Displays the most active ports used through the Juniper firewall. | 
| 74 | ITIL: Most Active Ports Through Firewall - Nortel | Displays the most active ports used through the Nortel firewall. | 
| 75 | ITIL: Most Active Ports Through Firewall - PANOS | Displays the most active ports used through the PANOS firewall. | 
| 76 | ITIL: McAfee AntiVirus: Attacks by Event ID | Displays McAfee AntiVirus attacks by Event ID. | 
| 77 | ITIL: McAfee AntiVirus: Attacks by Threat Name | Displays McAfee AntiVirus attacks by threat name. | 
| 78 | ITIL: McAfee AntiVirus: Attacks Detected | Displays attacks detected by McAfee AntiVirus. | 
| 79 | ITIL: NetApp Filer Audit Login Failed | Displays all NetApp Filer Audit Login events which have failed. | 
| 80 | ITIL: NetApp Filer Audit Policies Modified | Displays all policy modification activities on NetApp Filer Audit to ensure authorized and appropriate access. | 
| 81 | ITIL: NetApp Filer Boot Block Updated | Displays all events indicating that the boot block has been updated on the NetApp Filer. | 
| 82 | ITIL: NetApp Filer Disk Failure | Displays all disk failure events on the NetApp Filer servers. | 
| 83 | ITIL: NetApp Filer Login Failed | Displays all NetApp Filer Login events which have failed. | 
| 84 | ITIL: NetApp Filer Disk Missing | Displays events that indicate disk missing on the NetApp Filer servers. | 
| 85 | ITIL: NetApp Filer File System Full | Displays events that indicate the NetApp Filer's disk is near full. | 
| 86 | ITIL: NetApp Filer RAID Disk Inserted | Displays all events related to disk insertion into the NetApp Filer RAID. | 
| 87 | ITIL: NetApp Filer RAID Disk Pulled | Displays all events related to disk removal into the NetApp Filer RAID. | 
| 88 | ITIL: NetApp Filer Snapshot Error | Displays events that indicate backup on the NetApp Filer has failed. | 
| 89 | ITIL: NTP Daemon Exited | Displays events that indicate the NTP service has stopped. | 
| 90 | ITIL: NTP Server Unreachable | Displays events that indicate the remote NTP server is not reachable. | 
| 91 | ITIL: PANOS: Attacks by Event ID | Displays Palo Alto Networks attacks by Event ID. | 
| 92 | ITIL: PANOS: Attacks by Threat Name | Displays Palo Alto Networks attacks by threat name. | 
| 93 | ITIL: PANOS: Attacks Detected | Displays attacks detected by Palo Alto Networks. | 
| 94 | ITIL: Periodic Review of Log Reports | Displays all review activities performed by administrators to ensure review for any access violations. | 
| 95 | ITIL: Permissions Modified on Windows Servers | Displays all permission modification activities on Windows servers to ensure authorized access. | 
| 96 | ITIL: Policies Modified on Windows Servers | Displays all policy modification activities on Windows servers to ensure authorized and appropriate access. | 
| 97 | ITIL: RACF Permissions Changed | Displays all permission modification activities on RACF to ensure authorized access. | 
| 98 | ITIL: RACF Process Started | Displays all processes started on the RACF servers. | 
| 99 | ITIL: Software Update Successes on i5/OS | Displays all i5/OS successful events related to the system's software or patch update. | 
| 100 | ITIL: Symantec AntiVirus: Attacks by Threat Name | Displays Symantec AntiVirus attacks by threat name. | 
| 101 | ITIL: Symantec AntiVirus: Attacks Detected | Displays attacks detected by Symantec AntiVirus. | 
| 102 | ITIL: Symantec AntiVirus: Scans | Displays scans using Symantec AntiVirus. | 
| 103 | ITIL: Symantec AntiVirus: Updated | Displays updates to Symantec AntiVirus. | 
| 104 | ITIL: Symantec Endpoint Protection: Attacks by Threat Name | Displays Symantec Endpoint Protection attacks by threat name. | 
| 105 | ITIL: Symantec Endpoint Protection: Attacks Detected | Displays attacks detected by Symantec Endpoint Protection. | 
| 106 | ITIL: Symantec Endpoint Protection Configuration Changes | Displays Symantec Endpoint Protection configuration changes. | 
| 107 | ITIL: Symantec Endpoint Protection Policy Add, Remove, or Modify | Displays all events when a Symantec Endpoint Protection policy is added, removed, or modified. | 
| 108 | ITIL: Symantec Endpoint Protection: Scans | Displays scans using Symantec Endpoint Protection. | 
| 109 | ITIL: Symantec Endpoint Protection: Updated | Displays updates to Symantec Endpoint Protection. | 
| 110 | ITIL: System Restarted | Displays all logs related to system restarts. | 
| 111 | ITIL: TIBCO Administrator Login Failed | Displays all TIBCO Administrator Login events which have failed. | 
| 112 | ITIL: TIBCO ActiveMatrix Administrator Failed Logins | Displays all TIBCO ActiveMatrix Administrator Login events which have failed. | 
| 113 | ITIL: TIBCO Administrator Permission Changes | Displays events related to TIBCO Administrator permission modifications. | 
| 114 | ITIL: TIBCO ActiveMatrix Administrator Permission Changes | Displays events related to TIBCO ActiveMatrix Administrator permission modifications. | 
| 115 | ITIL: TrendMicro OfficeScan: Attacks Detected | Displays attacks detected by TrendMicro OfficeScan. | 
| 116 | ITIL: TrendMicro OfficeScan: Attacks Detected by Threat Name | Displays attacks detected by TrendMicro OfficeScan by threat name. | 
| 117 | ITIL: TrendMicro Control Manager: Attacks Detected | Displays attacks detected by TrendMicro Control Manager. | 
| 118 | ITIL: TrendMicro Control Manager: Attacks Detected by Threat Name | Displays attacks detected by TrendMicro Control Manager by threat name. | 
| 119 | ITIL: UNIX Failed Logins | Displays failed UNIX logins for known and unknown users. | 
| 120 | ITIL: vCenter Change Attributes | Modification of VMware vCenter and VMware ESX properties. | 
| 121 | ITIL: vCenter Modify Firewall Policy | Displays changes to the VMware ESX allowed services firewall policy. | 
| 122 | ITIL: vCenter Orchestrator Change Attributes | Modification of VMware vCenter Orchestrator properties. | 
| 123 | ITIL: vCenter Orchestrator Virtual Machine Created | Virtual machine has been created from VMware vCenter Orchestrator. | 
| 124 | ITIL: vCenter Orchestrator Virtual Machine Deleted | Virtual machine has been deleted from VMware vCenter Orchestrator. | 
| 125 | ITIL: vCenter Orchestrator Virtual Machine Shutdown | Virtual machine has been shutdown or paused from VMware vCenter Orchestrator console. | 
| 126 | ITIL: vCenter Orchestrator Virtual Machine Started | Virtual machine has been started or resumed from VMware vCenter Orchestrator console. | 
| 127 | ITIL: vCenter Orchestrator vSwitch Added, Changed or Removed | vSwitch has been added, modified or removed from VMware vCenter Orchestrator console. | 
| 128 | ITIL: vCenter Resource Usage Change | Resources have changed on VMware vCenter. | 
| 129 | ITIL: vCenter Restart ESX Services | VMware vCenter restarted services running on VMware ESX Server. | 
| 130 | ITIL: vCenter Shutdown or Restart of ESX Server | VMware ESX Server is shutdown or restarted from VMware vCenter console. | 
| 131 | ITIL: vCenter User Permission Change | A permission role has been added, changed, removed, or applied to a user on VMware vCenter server. | 
| 132 | ITIL: vCenter Virtual Machine Created | Virtual machine has been created from VMware vCenter console. | 
| 133 | ITIL: vCenter Virtual Machine Deleted | Virtual machine has been deleted or removed from VMware vCenter console. | 
| 134 | ITIL: vCenter Virtual Machine Shutdown | Virtual machine has been shutdown or paused from VMware vCenter console. | 
| 135 | ITIL: vCenter Virtual Machine Started | Virtual machine has been started or resumed from VMware vCenter console. | 
| 136 | ITIL: vCenter vSwitch Added, Changed or Removed | vSwitch on VMware ESX server has been added, modified or removed from the VMware vCenter console. | 
| 137 | ITIL: vCloud Organization Created | VMware vCloud Director organization created events. | 
| 138 | ITIL: vCloud Organization Deleted | VMware vCloud Director organization deleted events. | 
| 139 | ITIL: vCloud Organization Modified | VMware vCloud Director organization modified events. | 
| 140 | ITIL: vCloud vApp Created, Modified, or Deleted | VMware vCloud Director vApp created, deleted, and modified events. | 
| 141 | ITIL: vCloud vDC Created, Modified, or Deleted | VMware vCloud Director virtual datacenter created, modified, or deleted events. | 
| 142 | ITIL: VPN Connection Average Bandwidth | Displays the average bandwidth for VPN connections. | 
| 143 | ITIL: VPN Connection Average Duration | Displays the average duration of VPN connections. | 
| 144 | ITIL: vShield Edge Configuration Changes | Displays changes to VMware vShield Edge policies. | 
| 145 | ITIL: Web URLs Visited | Displays URLs that have been visited. | 
| 146 | ITIL: Web URLs Visited - F5 BIG-IP TMOS | Displays URLs that have been visited on F5 BIG-IP TMOS. | 
| 147 | ITIL: Web URLs Visited - Fortinet | Displays URLs that have been visited on Fortinet. | 
| 148 | ITIL: Web URLs Visited - Microsoft IIS | Displays URLs that have been visited on Microsoft IIS. | 
| 149 | ITIL: Web URLs Visited - PANOS | Displays URLs that have been visited on Palo Alto Networks. | 
| 150 | ITIL: Web URLs Visited via Proxy | Displays URLs that have been visited via a proxy server. | 
| 151 | ITIL: Web URLs Visited via Proxy - Blue Coat Proxy | Displays URLs that have been visited via a proxy server on Blue Coat Proxy. | 
| 152 | ITIL: Web URLs Visited via Proxy - Cisco WSA | Displays URLs that have been visited via a proxy server on Cisco WSA. | 
| 153 | ITIL: Web URLs Visited via Proxy - Microsoft IIS | Displays URLs that have been visited via a proxy server on Microsoft IIS. | 
| 154 | ITIL: Windows AD Backup Error | Displays events indicating that Windows AD backup has errors. | 
| 155 | ITIL: Windows AD Backup Failed | Displays events indicating that Windows AD backup has failed. | 
| 156 | ITIL: Windows AD Backup Starting | Displays events indicating that Windows AD backup has started. | 
| 157 | ITIL: Windows AD Exception Errors | Displays exception errors from Windows Active Directory. | 
| 158 | ITIL: Windows AD Replication Error | Displays replication errors for Windows Active Directory. | 
| 159 | ITIL: Windows AD Restore Failed | Displays events indicating restore of the Windows AD database has failed. | 
| 160 | ITIL: Windows AD Startup | Displays events related to the start up of Windows Active Directory. | 
| 161 | ITIL: Windows AD Unable to Recover | Displays events indicating Windows AD has errored and cannot recover. | 
| 162 | ITIL: Windows Domain Activities | Displays all trusted domains created or deleted on Windows servers to ensure authorized and appropriate access. | 
| 163 | ITIL: Windows New Services Installed | Displays a list of new services installed on Windows servers to ensure authorized access. | 
| 164 | ITIL: Windows Servers Restarted | Displays all Windows server restart activities to detect unusual activities. | 
| 165 | ITIL: Windows Software Update Failures | Displays all failed events related to the system's software or patch update. | 
| 166 | ITIL: Windows Software Update Successes | Displays all successful events related to the system's software or patch update. | 
Copyright © Cloud Software Group, Inc. All rights reserved.
