Solved

What do you use for centralized event log monitoring

Posted on 2010-11-18
3
537 Views
Last Modified: 2012-05-10
Currently we have about 30 servers and every Monday remote in to each and check event log for application and system warnings and alerts

In efforts to be proactive in catching things like:
1.      Disk space
2.      System battery recharges indicating the battery may need to be replaced as it occurs more and more.
3.      Application errors
4.      And more…

However accessing 30 servers is a time consuming process so what we are looking to accomplish:
1.      Consolidate Event monitoring into one area per location
2.      Have an at a glance look at what is going on
3.      Notifications on critical events

I've searched online for some options but am wondering what the user community is using that they highly recommend.
0
Comment
Question by:bergquistcompany
3 Comments
 
LVL 5

Accepted Solution

by:
rotech_IT earned 500 total points
ID: 34165759
If you're running an all DELL shop I'd recommend OpenManage.  Install Open Manage System Administrator on each of the servers.  Then install OpenManage IT Assistant on a single server to manage each of the OMSA's.  IT assistant acts as your administration console if you will.  You can find OpenManage on www.dell.com/support download site.  It will monitor the health of the system and you can specify email alerts or view health from a central console.

I use Nagios to monitor system health as well.  We've integrated OpenManage into it along with various other system checks.  We have over 700 checks.  Nagios is also able to fire an email for certain alerts that you specify.  You'll want to build a dedicated linux box to run Nagios.  We run it on OpenSuse 11.3.  Nagios is opensource and free.   http://www.nagios.org/   An alternative to Nagios would be something like http://www.activexperts.com/ , we used this for a few years before switching to Nagios.  ActiveXperts is not free.

As far as event log monitoring, there are several applications out there.  This is a large requirement for PCI compliance, so most of these applications are not free.  Here's one that I like: http://www.kiwisyslog.com/kiwi-syslog-server-overview/

Hope that helps!
0
 
LVL 7

Expert Comment

by:Mohamed Khairy
ID: 34166430
I recommend to use System Center Operation  Manager

http://www.microsoft.com/systemcenter/en/us/operations-manager.aspx
0
 
LVL 6

Expert Comment

by:JRoyse
ID: 34215339
0

Featured Post

Networking for the Cloud Era

Join Microsoft and Riverbed for a discussion and demonstration of enhancements to SteelConnect:
-One-click orchestration and cloud connectivity in Azure environments
-Tight integration of SD-WAN and WAN optimization capabilities
-Scalability and resiliency equal to a data center

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

by Nathan Brom/Bromy2004 Introduction There are numerous websites out there for any different type of program you can imagine.  Of those, you'll need to decide which ones are legitimate and aren't trying to steal your money or infect your comput…
The way I use Experts Exchange to assist me in analyzing and diagnosing a problem is I first enter a Verbose Question at Experts Exchange like: Office 2007 will hang when opening and saving files I then launch WordPad (any text editor will do) an…
Windows 8 comes with a dramatically different user interface known as Metro. Notably missing from the new interface is a Start button and Start Menu. Many users do not like it, much preferring the interface of earlier versions — Windows 7, Windows X…
Windows 8 came with a dramatically different user interface known as Metro. Notably missing from that interface was a Start button and Start Menu. Microsoft responded to negative user feedback of the Metro interface, bringing back the Start button a…

838 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question