Ad Widget

Collapse

Windows Event Log Monitoring

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • matidr
    Junior Member
    • Jan 2020
    • 8

    #1

    Windows Event Log Monitoring

    Hi everyone,

    I´ve been looking to a comprehensive explanation on how to add an item looking for a specific Log on Windows Event Log. I´ve done this al ready by its ID, but I´m now with the issue of trying to find a Log between logs with the same ID.

    I´m using Zabbix 5.0.7
    This is my Key: eventlog[Application,.str("Fault bucket"),"Information",,1001,10,skip]
    This is the Log I´m testing on:
    Click image for larger version

Name:	Log.PNG
Views:	329
Size:	22.3 KB
ID:	430040

    My goal is to find the Log by its Description.

    This is not working for me right now. Any ideas?

    Thanks!

    Matías.
  • johndoe2374
    Member
    • Aug 2021
    • 80

    #2
    Hello. Your regexp is in wrong syntax, you don't need to use str(). You can use PCRE for extended conditions, but in your case you can just use "Fault bucket":

    Comment

    • matidr
      Junior Member
      • Jan 2020
      • 8

      #3
      Originally posted by johndoe2374
      Hello. Your regexp is in wrong syntax, you don't need to use str(). You can use PCRE for extended conditions, but in your case you can just use "Fault bucket":
      https://www.zabbix.com/documentation...agent/win_keys
      Worked like a charm! Thanks a lot!

      This is the new Key: eventlog[Application,"Fault bucket","Information",,1001,10,skip]

      Click image for larger version

Name:	Log2.PNG
Views:	359
Size:	3.4 KB
ID:	430128

      Comment

      Working...