The Event Streamer module has the ability to monitor and send events from various Windows server technologies. The module can monitor the logs from Microsoft DHCP server, DNS server, Exchange server, IIS, and Net logon log files from an active directory server.
To add a file for monitoring:
Open the Event Streamer module policy configuration page.
Select the File Events tab.
Click the ADD MONITORED FILE button.
The Add File Stream dialog box appears.
.png)
Enter the following details for the file to be monitored:
Display Name: Name of the file provided to identify the file when it is displayed in the module policy UI.
File Type: The server log type to monitor and parse. Since each technology logs the data using different protocols, it is important to specify the correct file type. If the type is incorrect, the module will incorrectly parse the data and sends invalid data to the server.
Location and Filename: The full directory and name of file(s) to be monitored. To monitor all files with a specific extension, wildcards can be used (for example, *.log). To accommodate different system configurations, environment variables can be included as part of the directory paths (for example, SystemRoot).
Click Save. The module will start collecting events from these files.
Note
You might encounter Invalid or bad data displayed from file events on the destination server. To know more about the causes, see Data displayed on the destination server