Log collection failure alerts | Online help - EventLog Analyzer

Log collection failure alerts

Device down alert:
 
When configured devices don't respond to pings from EventLog Analyzer, it implies either of the following:
  1. The selected Syslog devices are not sending logs to EventLog Analyzer.
  2. EventLog Analyzer has not collected logs from the Windows devices for the assigned interval time, triggering an alert to the configured email address.
For Windows devices, last scan time will be considered. On the other hand, last message time will be taken into account for Syslog devices. 

Note: The device down alert signals when the time lapsed since the last message exceeds the time interval set by the end user.

Low disk space alert:

Since EventLog Analyzer requires a minimum of 5GB of free space, an alert is generated and sent as an email notification to admins when the disk space available in the local directory, index directory, product database, or archive directory goes below 5GB. You can change this setting manually by navigating to Settings > Admin Settings > Product Settings > Product Notifications.

      • Related Articles

      • Enabling historic log collection in EventLog Analyzer

        EventLog Analyzer collects all the logs present in the Windows Event Viewer (i.e., Windows Logs > Application, Security, System) when the historic log collection option is enabled. To enable historic log collection, follow the steps below:  Navigate ...
      • Understanding your log management solution

        Key log terminologies When managing logs, there are terminologies that will help you make the most of the product in hand. Following are the list of such terms and their definitions as used in EventLog Analyzer.   Agentless and agent-based log ...
      • Application and services log collection

        EventLog Analyzer supports the collection of application and services logs from the Event Viewer. For example, to successfully collect PowerShell logs from Windows, you have to add a key inside the registry of the respective client machine from which ...
      • DAE service failure during startup

        Open the <dir>:\ManageEngine\EventLog Analyzer\logs\wrapper.log file. Search for DAEService status in the wrapper file. If it hasn't been created, look for the serverout_yyyy-mm-dd.txt file from the same day in the logs folder. Check whether the ...
      • Introduction to EventLog Analyzer

        What is log management?  An enterprise network consists of different entities—perimeter devices, workstations, servers, applications, and more. Each entity records every activity that unfolds within it in the form of logs. These logs hold information ...