- Go to Servers & Devices -> Microsoft Windows -> Event Log Scanning
- Enter a name for the Event Definition
- Click the New button under the Event Definition textbox
- Enter the corresponding information (Note: you can reference the Windows Event Viewer as the OS level to obtain the necessary information. The diagram below shows how the event viewer matches up to the form.)
- Any field left blank will match any value in the event log.
- Any field filled in will limit the events which trigger alerts.
- The Event Key field will match text that appears in the event description. In the case below, it will match words in phrase "The Software Protection service has stopped."
- Select the server(s) and/or locations where you want to scan the event log
- Click OK to save the changes
General
Content
Integrations