Windows event log monitoring questions, and a WMI credential question

Windows event log monitoring questions, and a WMI credential question

Hi Guys,

Couple of questions for you all. Hopefully you can help me out.

  1. Is there a way to check the status of or set the check box located at Actions Menu --> Event Log Rules --> "Monitor Event Log For this device" in bulk for windows servers?  I just found a server where this was unchecked, the server had crashed and I was scratching my head as to why I did not get an alarm.
  2. Is there a way to set the event log monitoring interval in bulk?  It seems the default is 300 seconds.
  3. I know that if a server is unavailable for a few days because a wan link is down and the wan link comes back up a few days later the event log entries past a certain age are not caught, I assume for performance reasons.  I would like to know how long that is.  IE What is the reach back period for a event log checks?
  4. On a separate subject is there a way to verify that credentials (WMI) are working for a windows server?  I've noticed that if the password changes on a server that you stop getting performance metrics but I don't believe any alarm is thrown that tells you the credentials are wrong.  With several hundred servers being monitored that are not in a domain environment checking them all one by one is not an attractive idea.
Thank you very much!!!




                  New to ADSelfService Plus?