Hi everyone, i encountered such a problem. I want to collect some event logs from windows server, so i made several items that schould collect events with a specific id. But not all the data is received on the server. And also events that happened a long time ago can come.
For example,...
Search Result
Collapse
14 results in 0.0022 seconds.
Keywords
Members
Tags
-
eventlog does not collect all logs
-
Monitoraggio EventId 4740 di un utente specifico
Ciao a tutti,
in AD vorrei monitorare un utente specifico relativamente al solo blocco per troppi tentativi errati di accesso.
Ad ora sono riuscito a legare l'event log ed effettuare il controllo dell'id interessato.
Non riesco però a limitare il controllo a solo una determinata utenza.... -
How to Monitor Eventlog in Zabbix Agent 2
Dear Zabbix community,
I´ve installed zabbix Agent 2 with active checks. I linked the standard Template "Windows by Zabbix agent active" and a new Template for Windows EventLog to the Client.
When I use my Zabbix Agent 1 it's sending me information from my EventLog... -
Zabbix Trigger Exception for specific software installation
Hello, I am just starting with Zabbix as well as this forum so please understand if this post is out of place.
I have the following trigger set up for as a template for our Windows server to alert us if an installation occurs on any of the hosts.
{Template_Windows:eventlog[Application,,"Information",,11707,,... -
How to monitor Windows Event Log with eventlog item?
Dear all,
I setup zabbix agent on AD pc and turn on security audit, then I create a template just for monitoring windows event log from that AD. I tried many item that I collect from the internet but no ones work althought the connection is okay and others data are showed normally. I just want... -
Eventlog not trigger when value contains certain text
Hi all,
I am monitoring if a certain eventlog comes by and trigger when it does. This al works but now i want it NOT to be triggerd if the value contains certain text.
Anyone got some ideas? -
Emails after three times 4625 An account failed to log on.
Hi All,
I'm new to the forum and I have something I can't seem to figure out.
I'm pretty much a newbie to Zabbix as well, so bear with me.
I have everything set up to send an email when
... -
Eventlog trigger (Windows)
Hello, i'm kinda new to zabbix and I have problems to create trigger for eventlog item. I would like to monitor Error and Critical events but with sending me notification let's say only once per hour of same event if it creates multiple times. Hope this make sense
This is my trigger... -
Chave Eventlog não traz dados.
Olá,
Estou com problemas para monitorar os log do windows do TaskScheduler.
O zabbix não traz nenhuma informação.
Estou colocando a chave com essa expressão: eventlog[Microsoft-Windows-TaskScheduler/Operational,,"Warning|Error",TaskScheduler]. Mas o zabbix... -
How to query history_log for host event logs
I have not been able to connect the itemid with a hostid using a MySQL query using history_log. Also in history_log the clock timestamp is several days off from the timestamp from windows. from_unixtime (clock) works for the Zabbix received timestamp but is several days off for the windows timestamp.... -
EventLog Zabbix v2.0.0
Hi,
with the 2.0.0 version, I have tested the same template with the 1.8.12 and I foresee a problem.
The simple item Zabbix agent (active) with the key eventlog[Application,,,,,,].
The agent and server process are available
I create a new event in the Event Log Windows with... -
Windows EventLog Monitoring
My problem is that somehow some events get lost between zabbix and server. Im running Zabbix Server 1.8.8 and zabbix agent 1.8.9. item is collecting Error and Warring items from EventLog (Application, System). Somehow (randomly) my entries are not received (not showing in zabbix web).
... -
Windows Event Log client side filtering
Hi all,
I'm having problems getting client side filtering of the windows event logs to work. I try to filter out events with Severity "Information" (1) on the client side.
My item key is defined as follows:
eventlog[Security,,@no_information_severity]...