You are hereLongitude Knowledge Book / kb35: Viewing and Alerting on Windows Event Logs

kb35: Viewing and Alerting on Windows Event Logs


By csmith - Posted on 03 November 2009

  1. Set up WindowsEventLog Monitoring.

    By default, only Error messages are collected from the Application and System logs. Configure additional collections to collect other severities or logs.

  2. Viewing WindowsEventLog Events.

    Visible in Dashboards >> Event Monitor >> WindowsEventLog. Please note: Only events in the Application view can be used to trigger action rules or correlated events.

  3. Promote WindowsEventLog Events to Application Events.

    If you need to have a WindowsEventLog event trigger an alert/correlated event, promote that event to an event in the Application Event Monitor. Only Error events are promoted to Application Events by default.

  4. To promote additional WindowsEventLog severities to Application Events -

    modify Monitoring >> Manage Rules >> WindowsEventLog >> TypeList.