I changed as described and also restarted the nagios client service and i still don't see "UnConfigured Objects" other than adding this to the nscclient.ini file is there anything to be done on the nagios server host.
Ex:- create a service or anything which I am missing.
[/settings/NSCA/client]
channel = NSCA
hostname = <Hostname>
[/settings/NSCA/client/targets/default]
address = 172.16.3.214
allowed ciphers = ADH
certificate =
encryption = none
password =
timeout = 30
use ssl = false
verify mode = none
[/settings/eventlog]
buffer size = 131072
debug = false
lookup names = true
syntax =
[/settings/eventlog/real-time]
debug = false
enabled = true
log = application,system
startup age = 30m
[/settings/eventlog/real-time/filters]
[/settings/eventlog/real-time/filters/default]
destination=NSCA
maximum age= 3d
ok message= Found no records in eventlog last three days.
syntax=%type% %id% %source%: %message%
[/settings/eventlog/real-time/filters/EVT_Application]
log= application
filter= level IN (error) AND (id NOT IN (1,3,10,12,13,23,26,33,37,38,58,67,101,103,104,107,108,110,112,274,502,511,1000,1002,1004,1005,1009,1010,1026,1027,1053,1054,1085,1101,1107,1116,1301,1325,1334,1373,1500,1502,1504,1508,1511,1515,1521,1533,1542,2019,2158,2636,2670,3001,3008,3012,3021,3032,3037,3042,3077,3079,3098,3119,3130,3131,3148,3159,4005,4102,4237,4621,5008,5009,5051,5124,5133,5605,5705,6001,6007,6016,6032,6044,6100,7043,7363,7735,7823,7827,7833,8193,8194,8196,8313,9001,10000,10005,10007,10862,10922,11317,12121,12289,12291,12298,12321,13793,13836,14197,14204,15000,16038,16041,16053,16058,16063,16066,16068,16082,16195,16391,16418,16419,16421,17187,17192,17204,17412,17898,18176,19269,19458,19954,19969,19972,20958,21061,22670,35698,35705,35710,35712,35716,35721,35726,37088,37090,37092,37095,37098,37119,37124,37225)) AND (id NOT IN (1509) OR source NOT IN ('Userenv')) AND (id NOT IN (1055) OR source NOT IN ('Userenv')) AND (id NOT IN (1030) OR source NOT IN ('Userenv')) AND (id NOT IN (1006) OR source ;NOT IN ('Userenv'))
severity= WARNING
ok message= Found no records in application eventlog last three days.
maximum age= 3d
[/settings/eventlog/real-time/filters/EVT_System]
log= system
filter= level IN (info) AND (id IN (3201,3202))
severity= WARNING
ok message= Found no records in system eventlog last three days.
maximum age= 1d
Nagios Quick Notification Response?
Re: Nagios Quick Notification Response?
This is the log after enabling debug:
I am not worried about other alerts not working as long as this ---> filter= level IN (info) AND (id IN (3201,3202)) is working.
2015-09-21 17:15:06: e:c:\build\nscp\include\parsers/filter/where_filter_impl.hpp:89: Parsing failed of 'level IN (error) AND (id NOT IN (1,3,10,12,13,23,26,33,37,38,58,67,101,103,104,107,108,110,112,274,502,511,1000,1002,1004,1005,1009,1010,1026,1027,1053,1054,1085,1101,1107,1116,1301,1325,1334,1373,1500,1502,1504,1508,1511,1515,1521,1533,1542,2019,2158,2636,2670,3001,3008,3012,3021,3032,3037,3042,3077,3079,3098,3119,3130,3131,3148,3159,4005,4102,4237,4621,5008,5009,5051,5124,5133,5605,5705,6001,6007,6016,6032,6044,6100,7043,7363,7735,7823,7827,7833,8193,8194,8196,8313,9001,10000,10005,10007,10862,10922,11317,12121,12289,12291,12298,12321,13793,13836,14197,14204,15000,16038,16041,16053,16058,16063,16066,16068,16082,16195,16391,16418,16419,16421,17187,17192,17204,17412,17898,18176,19269,
19458,19954,19969,19972,20958,21061,22670,35698,35705,35710,35712,35716,35721,35726,37088,37090,37092,37095,37098,37119,37124,37225)) AND (id NOT IN (1509) OR source NOT IN ('Userenv')) AND (id NOT IN (1055) OR source NOT IN ('Userenv')) AND (id NOT IN (1030) OR source NOT IN ('Userenv')) AND (id NOT IN (1006) OR source ;NOT IN ('Userenv'))' at: AND (id NOT IN (1006) OR source ;NOT IN ('Userenv'))
2015-09-21 17:15:06: e:..\..\..\..\nscp\modules\CheckEventLog\CheckEventLog.cpp:135: Error validating filter: Parsing failed: AND (id NOT IN (1006) OR source ;NOT IN ('Userenv'))
2015-09-21 17:15:09: e:..\..\..\..\nscp\modules\CheckSystem\PDHCollector.cpp:141: Failed to query performance counters: Negative denominator issue (check FAQ for ways to solve this): \238(_total)\6: -2147481642: A counter with a negative denominator value was detected.
I am not worried about other alerts not working as long as this ---> filter= level IN (info) AND (id IN (3201,3202)) is working.
2015-09-21 17:15:06: e:c:\build\nscp\include\parsers/filter/where_filter_impl.hpp:89: Parsing failed of 'level IN (error) AND (id NOT IN (1,3,10,12,13,23,26,33,37,38,58,67,101,103,104,107,108,110,112,274,502,511,1000,1002,1004,1005,1009,1010,1026,1027,1053,1054,1085,1101,1107,1116,1301,1325,1334,1373,1500,1502,1504,1508,1511,1515,1521,1533,1542,2019,2158,2636,2670,3001,3008,3012,3021,3032,3037,3042,3077,3079,3098,3119,3130,3131,3148,3159,4005,4102,4237,4621,5008,5009,5051,5124,5133,5605,5705,6001,6007,6016,6032,6044,6100,7043,7363,7735,7823,7827,7833,8193,8194,8196,8313,9001,10000,10005,10007,10862,10922,11317,12121,12289,12291,12298,12321,13793,13836,14197,14204,15000,16038,16041,16053,16058,16063,16066,16068,16082,16195,16391,16418,16419,16421,17187,17192,17204,17412,17898,18176,19269,
19458,19954,19969,19972,20958,21061,22670,35698,35705,35710,35712,35716,35721,35726,37088,37090,37092,37095,37098,37119,37124,37225)) AND (id NOT IN (1509) OR source NOT IN ('Userenv')) AND (id NOT IN (1055) OR source NOT IN ('Userenv')) AND (id NOT IN (1030) OR source NOT IN ('Userenv')) AND (id NOT IN (1006) OR source ;NOT IN ('Userenv'))' at: AND (id NOT IN (1006) OR source ;NOT IN ('Userenv'))
2015-09-21 17:15:06: e:..\..\..\..\nscp\modules\CheckEventLog\CheckEventLog.cpp:135: Error validating filter: Parsing failed: AND (id NOT IN (1006) OR source ;NOT IN ('Userenv'))
2015-09-21 17:15:09: e:..\..\..\..\nscp\modules\CheckSystem\PDHCollector.cpp:141: Failed to query performance counters: Negative denominator issue (check FAQ for ways to solve this): \238(_total)\6: -2147481642: A counter with a negative denominator value was detected.
Re: Nagios Quick Notification Response?
In your nsclient.ini file, under this section, you need to fill in a password.
That password has to match the password in the Nagios system and that has to be configured to receive from your windows system and here are the links to configure the Nagios system.
You can also test to see if the Windows host is sending data to the Nagios system by running the following. Replace xxx.xxx.xxx.xxx with the IP of windows host.
Code: Select all
[/settings/NSCA/client/targets/default]
password =Code: Select all
https://assets.nagios.com/downloads/nagiosxi/docs/Using-and-Configuring-NSCA-With-Nagios-XI.pdf
https://assets.nagios.com/downloads/nagiosxi/docs/Configuring_Inbound_Checks_With_XI.pdfCode: Select all
tcpdump host xxx.xxx.xxx.xxxBe sure to check out our Knowledgebase for helpful articles and solutions!