Search found 42 matches

by kgugerty
Thu Jan 19, 2017 6:01 pm
Forum: Nagios XI
Topic: Check_WMI_Plus error when no results from eventlog
Replies: 39
Views: 14321

Re: Check_WMI_Plus error when no results from eventlog

Does ping run successfully? Yes Can you show us the result of a nmap <IP> and nmap <FQDN>? PORT STATE SERVICE 80/tcp open http 135/tcp open msrpc 139/tcp open netbios-ssn 445/tcp open microsoft-ds 3389/tcp open ms-wbt-server 49152/tcp open unknown 49153/tcp open unknown 49154/tcp open unknown Searc...
by kgugerty
Wed Jan 18, 2017 6:01 pm
Forum: Nagios XI
Topic: Check_WMI_Plus error when no results from eventlog
Replies: 39
Views: 14321

Re: Check_WMI_Plus error when no results from eventlog

NSLookup resolves the host to an IP and Pinging the FQDN resolves to an IP as well. Are you able to run it through an strace and post the result? not sure what strace is? but I have some interesting results from traceroute.... 2 * * * 3 * * * 4 * * * 5 * * * 6 * * * 7 * * * 8 * * * 9 * * * 10 * * * ...
by kgugerty
Wed Jan 18, 2017 12:30 pm
Forum: Nagios XI
Topic: Check_WMI_Plus error when no results from eventlog
Replies: 39
Views: 14321

Re: Check_WMI_Plus error when no results from eventlog

I have not been able to figure this one out. The Network team states there are no restrictions placed between the networks that would prevent WMI communication. Running a simple WMIC query from the command line produces the same results. wmic -U DOMAIN/USERNAME%PASSWORD --namespace="root\cimv2&...
by kgugerty
Thu Jan 12, 2017 5:49 pm
Forum: Nagios XI
Topic: Check_WMI_Plus error when no results from eventlog
Replies: 39
Views: 14321

Re: Check_WMI_Plus error when no results from eventlog

Both Servers are Windows 2008R2 Enterprise SP1 servers. Both Versions of WMI are 7601.17514. It turns out -- ALL of my WMI commands return this error: OUTPUT: [librpc/rpc/dcerpc_connect.c:329:dcerpc_pipe_connect_ncacn_ip_tcp_recv()] failed NT status (c00000b5) in dcerpc_pipe_connect_ncacn_ip_tcp_rec...
by kgugerty
Wed Jan 11, 2017 4:00 pm
Forum: Nagios XI
Topic: Check_WMI_Plus error when no results from eventlog
Replies: 39
Views: 14321

Re: Check_WMI_Plus error when no results from eventlog

So, this might actually be a setting on the Windows side. I ran the tests against a different set of servers and came up with the expected results. I didn't think to look at the Windows side because it DOES work when there are events discovered. In any case. I will compare the settings and post what...
by kgugerty
Mon Jan 09, 2017 4:15 pm
Forum: Nagios XI
Topic: Check_WMI_Plus error when no results from eventlog
Replies: 39
Views: 14321

Re: Check_WMI_Plus error when no results from eventlog

I get an unknown wmic --version Version 4.0.0tp4-SVN-build-UNKNOWN I am fairly new to Linux and have not dabbled much into troubleshooting builds. I also found this command: check_wmi_plus.pl -d -d | head -n 20 --------------------- Module Versions --------------------- Warning - one or more of your...
by kgugerty
Mon Jan 09, 2017 12:25 pm
Forum: Nagios XI
Topic: Check_WMI_Plus error when no results from eventlog
Replies: 39
Views: 14321

Re: Check_WMI_Plus error when no results from eventlog

Keeping everyone informed: --I supplied dwhitfield with the profile export and unmodified check command. Also, as mcapra was unable to replicate I decided to re-import a fresh install from the VMWare OVA template in a test environment. I installed the WMI Client following the instructions at: https:...
by kgugerty
Fri Jan 06, 2017 6:12 pm
Forum: Nagios XI
Topic: Check_WMI_Plus error when no results from eventlog
Replies: 39
Views: 14321

Re: Check_WMI_Plus error when no results from eventlog

z I've been unable to replicate this so far against check_wmi_plus 1.6: [root@xi-stable ~]# /usr/local/nagios/libexec/check_wmi_plus.pl -H 192.168.67.99 -u admin -p welcome123@ -m checkeventlog -a system -o 2 -3 4 -w 4 -c 6 OK - 0 event(s) of Severity Level: "Error,Warning", were recorded...
by kgugerty
Fri Jan 06, 2017 6:01 pm
Forum: Nagios XI
Topic: Check_WMI_Plus error when no results from eventlog
Replies: 39
Views: 14321

Re: Check_WMI_Plus error when no results from eventlog

What's the output of sestatus ? I know that seems weird, but with dcerpc we've seen SELinux issues in the past. Also, do you have your quotes set appropriately in the command? I know you are just using variables here, but there's nothing quoted. If you could give us something a little closer like t...
by kgugerty
Fri Jan 06, 2017 5:13 pm
Forum: Nagios XI
Topic: Check_WMI_Plus error when no results from eventlog
Replies: 39
Views: 14321

Re: Check_WMI_Plus error when no results from eventlog

Below is an execution with the debug option. Command Line (v1.6): /usr/local/nagios/libexec/check_wmi_plus.pl -H HOST -u USER -p PASS -m checkeventlog -a system -o 2 -3 4 -w 1 -c 6 -d Base Dir: /usr/local/nagios/libexec Conf File Dir: /usr/local/nagios/libexec Loaded Conf File /usr/local/nagios/libe...