|
Event Log Consolidation |
Top Previous Next |
|
You can consolidate events from multiple servers and/or workstations to a central ODBC database to
In order to setup event consolidation you will need to:
Figure 8 illustrates an event log consolidation in a heterogenous network:
Figure 8
Syslog Message Flow Using the Syslog feature you can also store events generated on non-Windows device in the database. Unix based machines (here Linux and OpenBSD machines) and many network devices send Syslog messages over the Syslog UDP/TCP protocol to a Windows machine running EventSentry with the Syslog daemon running. This host in turn forwards all Syslog messages, according to your filter rules, to one or more actions.
Starting with version 2.80, the Syslog daemon can also consolidate incoming Syslog messages directly into the EventSentry database, without the need of going through the Application event log. This is useful when you do not need to receive Syslog alerts and/or if you need to consolidate large amounts of data.
|