monitoring windows event viewer.

Polifemo, Salvatore polifemos at conedsolutions.com
Tue Dec 28 15:56:33 CET 2010


One use of syslog to set up rules and then take an action.
We look for error then send out an email.

Take a look at the syslog-ng forum.

Salvatore Polifemo
Sr. Systems Security Specialist
ConEdison Solutions
100 Summit Lake Drive
Valhalla, NY 10595


-----Original Message-----
From: Daniel Wittenberg [mailto:daniel.wittenberg.r0ko at statefarm.com] 
Sent: Tuesday, December 28, 2010 9:46 AM
To: Nagios Users List
Subject: Re: [Nagios-users] monitoring windows event viewer.

Doesn't syslog-ng just consolidate the logs, it doesn't really monitor
anything right?

Dan

-----Original Message-----
From: Polifemo, Salvatore [mailto:polifemos at conedsolutions.com] 
Sent: Tuesday, December 28, 2010 8:38 AM
To: Nagios Users List
Subject: Re: [Nagios-users] monitoring windows event viewer.

If you will be monitoring event logs, you may want to look at
applications made for monitoring event logs.
One application that works well for us is syslog-ng.

Salvatore Polifemo
Sr. Systems Security Specialist
ConEdison Solutions
100 Summit Lake Drive
Valhalla, NY 10595

-----Original Message-----
From: Chris Beattie [mailto:cbeattie at geninfo.com] 
Sent: Tuesday, December 28, 2010 9:32 AM
To: Nagios Users List
Subject: Re: [Nagios-users] monitoring windows event viewer.

Toonz IT wrote:
> Is it possible to monitor specific event ids like disk error, fro 
> windows event viewer logs??

Yes, but you may have to use the NSClient++ agent on your Windows boxes 
and create custom commands to do it.

http://nsclient.org/nscp/wiki/CheckEventLog/CheckEventLog

Unfortunately, I deleted the Windows event log checks after I didn't 
need them any more, so I don't have a working example configuration to 
show you.


-- 
-Chris

------


Nothing in this message is intended to make or accept an offer or to
form a contract, except that an attachment that is an image of a
contract bearing the signature of an officer of our company may be or
become a contract. This message (including any attachments) is intended
only for the use of the individual or entity to whom it is addressed. It
may contain information that is non-public, proprietary, privileged,
confidential, and exempt from disclosure under applicable law or may
constitute as attorney work product. If you are not the intended
recipient, we hereby notify you that any use, dissemination,
distribution, or copying of this message is strictly prohibited. If you
have received this message in error, please notify us immediately by
telephone and delete this message immediately.

Thank you.


------------------------------------------------------------------------
------
Learn how Oracle Real Application Clusters (RAC) One Node allows
customers
to consolidate database storage, standardize their database environment,
and, 
should the need arise, upgrade to a full multi-node Oracle RAC database 
without downtime or disruption
http://p.sf.net/sfu/oracle-sfdevnl
_______________________________________________
Nagios-users mailing list
Nagios-users at lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/nagios-users
::: Please include Nagios version, plugin version (-v) and OS when
reporting any issue. 
::: Messages without supporting info will risk being sent to /dev/null

------------------------------------------------------------------------
------
Learn how Oracle Real Application Clusters (RAC) One Node allows
customers
to consolidate database storage, standardize their database environment,
and, 
should the need arise, upgrade to a full multi-node Oracle RAC database 
without downtime or disruption
http://p.sf.net/sfu/oracle-sfdevnl
_______________________________________________
Nagios-users mailing list
Nagios-users at lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/nagios-users
::: Please include Nagios version, plugin version (-v) and OS when
reporting any issue. 
::: Messages without supporting info will risk being sent to /dev/null

------------------------------------------------------------------------
------
Learn how Oracle Real Application Clusters (RAC) One Node allows
customers
to consolidate database storage, standardize their database environment,
and, 
should the need arise, upgrade to a full multi-node Oracle RAC database 
without downtime or disruption
http://p.sf.net/sfu/oracle-sfdevnl
_______________________________________________
Nagios-users mailing list
Nagios-users at lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/nagios-users
::: Please include Nagios version, plugin version (-v) and OS when
reporting any issue. 
::: Messages without supporting info will risk being sent to /dev/null

------------------------------------------------------------------------------
Learn how Oracle Real Application Clusters (RAC) One Node allows customers
to consolidate database storage, standardize their database environment, and, 
should the need arise, upgrade to a full multi-node Oracle RAC database 
without downtime or disruption
http://p.sf.net/sfu/oracle-sfdevnl
_______________________________________________
Nagios-users mailing list
Nagios-users at lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/nagios-users
::: Please include Nagios version, plugin version (-v) and OS when reporting any issue. 
::: Messages without supporting info will risk being sent to /dev/null





More information about the Users mailing list