User guide

46
domain
The domain of the remote machine to
monitor
A valid domain name.
user
The username of the account on the remote
machine that should be used for monitoring
A valid user account.
password
The password to use to login to the user
account
A valid password. Be sure to
escape special XML
characters.
logfilename
A remote NT Log file to monitor
The name of a remote NT
Log file.
For More Information
Tenable has produced a variety of additional documents detailing the LCE’s deployment, configuration, user operation,
and overall testing. These documents are listed here:
Log Correlation Engine Architecture Guide provides a high-level view of LCE architecture and supported
platforms/environments.
Log Correlation Engine Administrator and User Guide describes installation, configuration, and operation of the
LCE.
Log Correlation Engine Quick Start Guide provides basic instructions to quickly install and configure an LCE
server. A more detailed description of configuration and management of an LCE server is provided in the “LCE
Administration and User Guide” document.
Log Correlation Engine Client Guide how to configure, operate, and manage the various Unix, Windows,
NetFlow, OPSEC, and other clients.
LCE High Performance Configuration Guide details various configuration methods, architecture examples, and
hardware specifications for achieving high performance with Tenable's Log Correlation Engine, specifically for
organizations with logging requirements in the tens of thousands of Events Per Second (EPS).
LCE Best Practices Learn how to best leverage the Log Correlation Engine in your enterprise.
Tenable Event Correlation outlines various methods of event correlation provided by Tenable products and
describes the type of information leveraged by the correlation, and how this can be used to monitor security and
compliance on enterprise networks.
Tenable Products Plugin Families provides a description and summary of the plugin families for Nessus, Log
Correlation Engine, and the Passive Vulnerability Scanner.
Log Correlation Engine Log Normalization Guide explanation of the LCE’s log parsing syntax with extensive
examples of log parsing and manipulating the LCE’s .prm libraries.
TASL Reference Guide explanation of the Tenable Application Scripting Language with extensive examples of a
variety of correlation rules.
Log Correlation Engine Statistics Daemon Guide configuration, operation, and theory of the LCE’s statistic
daemon used to discover behavioral anomalies.
Log Correlation Engine Large Disk Array Install Guide configuration, operation, and theory for using the LCE in
large disk array environments.