Security Compliance

Include the SEM Agent in a Windows image

This article documents how to include the SEM Agent in a Windows image so that the computers you deploy using the image can connect successfully to the SEM Manager.

First published date

10/9/2018 7:30 PM

Last published date

10/9/2018 7:30 PM

Overview

To create a Windows image that includes the Security Event Manager (formerly Log & Event Manager) Agent, use the following steps so that the computers you deploy using the image can connect successfully to the SEM Manager. 

Product section

Security Event Manager

Resolution

Important: Do not restart the computer during the setup procedure. If you have to restart the computer, complete Steps 3 and 4 before you proceed.

  1. Install the SEM Agent on the computer you will use to create the image and verify that it connects to your SEM Manager.
  2. Stop the SolarWinds SEM Agent service.
  3. Delete the spop folder:
    • C:\Windows\SysWOW64\ContegoSPOP\spop
  4. Image the computer.
  5. Remove the original computer from your SEM Manager:
    1. Open your SEM Flash console, and then connect to your SEM manager.
    2. Click the Manage tab, and then select Nodes.
    3. Locate the SEM Agent in the list. Use the Refine Results pane if necessary.
    4. Click the gear icon, next to the SEM Agent, and then click Delete.

      - OR -

    1. In the SEM HTML5 console, click the Nodes tab, and then select the check box next to the agent. 
    2. From the More drop-down list, select Delete node.

After you deploy the image, verify that the SEM Agents on the new computers connect to your SEM Manager in the Manage > Nodes view (Flash console), or on the Nodes tab in the SEM Events Console (HTML5 console).