Security Compliance
Conditions for the default SEM Failed Logons filter
This article provides information about the conditions used for the default Failed Logons filter.
First published date
Last published date
Overview
This article applies to Security Event Manager (formerly Log & Event Manager).
This article provides the filter conditions used when filtering events on failed logons.
Product section
Resolution
- Click the Events tab, and then expand the Authentication filter group
- Move your pointer over the Failed Logons filter to expose the vertical ellipsis.
- Click the vertical ellipsis, and then click Edit.
The editable filter conditions appear in the filter builder.