Search found 16 matches
- Tue Jun 13, 2017 9:04 am
- Forum: Nagios Log Server
- Topic: New Install - Trying to capture only Specific Event ID's
- Replies: 17
- Views: 7989
Re: New Install - Trying to capture only Specific Event ID's
So above, your referencing a router and a PIX Firewall? Which is not an issue. Just wondering. This customer has 1700 nodes (switches, routers). SNMP RO string set on ally. Netflow configured to hit Nagios Network Monitor. I feel as if I'm missing something about this Logger product. I really just w...
- Tue Jun 13, 2017 8:57 am
- Forum: Nagios Log Server
- Topic: New Install - Trying to capture only Specific Event ID's
- Replies: 17
- Views: 7989
Re: New Install - Trying to capture only Specific Event ID's
Geez. Where do you find this stuff. I've looked all over.
Very much appreciated, I will definitely check it out.
Exacty what I needed. Now I just need to read more "stuff"
Very much appreciated, I will definitely check it out.
Exacty what I needed. Now I just need to read more "stuff"
- Tue Jun 13, 2017 8:36 am
- Forum: Nagios Log Server
- Topic: New Install - Trying to capture only Specific Event ID's
- Replies: 17
- Views: 7989
Re: New Install - Trying to capture only Specific Event ID's
Hm. I really appreciate the information. I wanted to come at this as only getting the data I needed from each server. Particularly, event logs. I suppose I could always adjust GPO to some degree to get rid of those. I really appreciate the different perspective, gives me something to contemplate. Is...
- Mon Jun 12, 2017 8:30 pm
- Forum: Nagios Log Server
- Topic: New Install - Trying to capture only Specific Event ID's
- Replies: 17
- Views: 7989
Re: New Install - Trying to capture only Specific Event ID's
My concern is this open source product has been around for some time. This "forum" doesn't seem to care, or you don't know. I already have another way to pull this off, I just thought that former open-source, now supported product, tons of books, yet one person answering the thread. The in...
- Mon Jun 12, 2017 8:15 pm
- Forum: Nagios Log Server
- Topic: New Install - Trying to capture only Specific Event ID's
- Replies: 17
- Views: 7989
Re: New Install - Trying to capture only Specific Event ID's
I guess I'm not seeing the value in Logger everyone. To pay for something that is not setup correct? NXLOG, NSClient++ installed. The value was supposed to be the ability to filter traffic at the source to the destination. But if I cannot alert on that or send it someone else like a "Reactor&qu...
- Mon Jun 12, 2017 7:51 pm
- Forum: Nagios Log Server
- Topic: New Install - Trying to capture only Specific Event ID's
- Replies: 17
- Views: 7989
Re: New Install - Trying to capture only Specific Event ID's
I seem to have this working. What I'm missing is the Alerting. The alerting with Nagios Logger seems to be static? There are 4 queries only by default and it says to configure them using the "Dashboard"? I'm not seeing it. There has to be an easier way. If a 4001 happens for example, I nee...
- Mon Jun 12, 2017 3:15 pm
- Forum: Nagios Log Server
- Topic: New Install - Trying to capture only Specific Event ID's
- Replies: 17
- Views: 7989
Re: New Install - Trying to capture only Specific Event ID's
This section below, per mcapra, allowed the service to start. Service is started. I just need to do the remaining DC's and verify on Log Server. If this works, it could essentially replace what I'm getting from the Quest tool. Now, I did try a similar scenario on a few of the 2003 servers, not in th...
- Mon Jun 12, 2017 3:03 pm
- Forum: Nagios Log Server
- Topic: New Install - Trying to capture only Specific Event ID's
- Replies: 17
- Views: 7989
Re: New Install - Trying to capture only Specific Event ID's
I'm hoping that is the case. Looks good just no time to test yet. Had to finish up Office 365 migration this weekend. I've got meetings this week scheduled with development and application support to find out what logs we can monitor and what keywords. I'm going to test this out for sure. I have dev...
- Fri Jun 09, 2017 2:07 am
- Forum: Nagios Log Server
- Topic: New Install - Trying to capture only Specific Event ID's
- Replies: 17
- Views: 7989
Re: New Install - Trying to capture only Specific Event ID's
Thus far, I got away with this # Windows Event Log <Input eventlog> # Uncomment im_msvistalog for Windows Vista/2008 and later Module im_msvistalog Query <QueryList>\ <Query Id="0">\ <Select Path="System">*</Select>\ <Select Path="Security">*</Select>\ </Query>\ </Query...
- Fri Jun 09, 2017 1:43 am
- Forum: Nagios Log Server
- Topic: New Install - Trying to capture only Specific Event ID's
- Replies: 17
- Views: 7989
Re: New Install - Trying to capture only Specific Event ID's
Nothing I try on client side seems to work. I cannot get this to only collect these logs and nothing else. Any reference I find says to pull it all in and filter it server side. That is just wasted data.