CFitz89 Posted August 9, 2013 Posted August 9, 2013 Hi, I am just wondering what events or what critical events are worth monitoring from the event viewer. Keywords, Event IDs' etc..
Administrators Paul Posted August 9, 2013 Administrators Posted August 9, 2013 Disk, disk, controller, raid, failed, bluescreen, dump Those are my commonly used keywords.
CFitz89 Posted August 9, 2013 Author Posted August 9, 2013 Are those terms not a bit broad? Will you not get a notification anytime there is an event logged with "Disk" etc.. ?? What about DHCP or DNS? Or Windows server backups?
Administrators Paul Posted August 9, 2013 Administrators Posted August 9, 2013 (edited) Well it depends from case to case. I never use DHCP and my DNS server never failed me but I monitor it with the service monitoring feature of pc monitor so monitoring dns event log entries is just redundant. Yes, if the event contains one of the configured keywords you will receieve a notification. Windows Server Backup is kind of hard to monitor at the moment, you need to research it's event IDs and pinpoint every possible case. Edited August 9, 2013 by Paul
Marius Posted August 9, 2013 Posted August 9, 2013 Update: Windows Server Backup module is now available in the latest Windows Agent (4.0) and works on Windows Server 2008 R2 or higher. Paul 1
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now