We have a requirement to monitor logs on remote servers that we're already monitoring with the Microsoft platform WMI protocol.
Is there a protocol available to watch for lines being added to the logs that contain certain information? or any other way of watching for lines being added?
Hi Phil - maybe a quick clarification first. When you talk about Windows Log, are we talking about the event log from Windows itself? Because the MS Platform driver has that capability (with the option to trigger alarms when specific key words are detected). Or are you talking about text log files in general, so reading the content of text log files and processing that?
Indeed, if the log information you want shows up in the Event Viewer, then the functionality built into the Microsoft Platform element works well from personnel experience, though it does sometimes take a bit of work to get permissions set properly and to fine tune the criteria to find the specific event for which you are looking. If it doesn’t work on first attempt, please reach out for assistance.
Hi Ben,
We do use the event viewer function already, unfortunately in this case it’s third party software log files, so we’d need to read that in and process it.
Philip, would subscribing to the Event Viewer be a viable solution here? The MS Platform connector already provides this. Please see the help section in the catalog: https://catalog.dataminer.services/result/driver/251