Solved

Event Viewer tool

Posted on 2013-01-23
8
665 Views
Last Modified: 2013-02-18
Hello ,

I need a Microsoft tool to extract the Event log contents .. I need to filter the object type from the description of the Success audits for DNS audits.

Looking a tool from Microsoft .
0
Comment
Question by:Premkumar Yogeswaran
8 Comments
 
LVL 10

Expert Comment

by:Korbus
ID: 38808917
Just right click the log, and save it.  
Or do you mean that you need this done programatically?
0
 
LVL 17

Author Comment

by:Premkumar Yogeswaran
ID: 38808932
Yes saving does not give me the Description in Windows 2003 R2
0
 
LVL 23

Accepted Solution

by:
ComputerTechie earned 200 total points
ID: 38813940
0
Best Practices: Disaster Recovery Testing

Besides backup, any IT division should have a disaster recovery plan. You will find a few tips below relating to the development of such a plan and to what issues one should pay special attention in the course of backup planning.

 
LVL 22

Expert Comment

by:65td
ID: 38814770
Microsoft also has an intersting tool called LogPaser that meet your needs.
http://www.microsoft.com/en-ca/download/details.aspx?id=24659
0
 
LVL 3

Assisted Solution

by:jeorge
jeorge earned 150 total points
ID: 38818186
Hi Microsoft has the event tool by the name of Event viewer.

http://technet.microsoft.com/en-us/library/cc722404.aspx

http://support.microsoft.com/kb/308427

http://support.microsoft.com/kb/308427

You can search the tool on google. Once the tool is downloaded you can typr in at the run command-> eventvwr and the tool will be ready to use.

Since you are going to use Microsoft event viewer tool i would love to tell you some drawbacks that microsoft tool have.

You cannot scheulede reports from the native MIcrosoft event viewer.
You cannot create alerts , complaince reports etc. from the microsoft tool.

For instance, Hippa , SOX, PCI are the  most common used today for daily transcation. Microsoft event viewer tool generally overwrite the all the log one after the other which in turns face little difficulty while complaincing the report.

Few years back i too have to use this and i tried Microsoft tool but since these problem i faced i switched to a another third party tool.

You too can test out the tool and if you face the same as I, I can recommend you the tool i tested after this.

Update back to the community for the same.
0
 
LVL 22

Assisted Solution

by:Paka
Paka earned 150 total points
ID: 38821064
The native event viewer should work for this.  I ran a test on one of my W2003R2 servers and it does export the Description field:

1/23/2013      10:24:57 PM      MsiInstaller      Information      None      11707      ROUTER-01\Administrator      ROUTER-01      Product: Microsoft Network Monitor: NetworkMonitor Parsers 3.4 -- Installation completed successfully.

To export:
Right-click the log you want to export
Select Save Log File as...
Type a file name
Select either Tab or CSV format as the type

Description will be the 9th column.

Here's an example of of one of my DNS logs exported:
5/31/2012      9:08:55 PM      DNS      Warning      None      4521      N/A      PT-E2A636BDEDE9      The DNS server encountered error 32 attempting to load zone 1.1.30.in-addr.arpa from Active Directory. The DNS server will attempt to load this zone again on the next timeout cycle. This can be caused by high Active Directory load and may be a transient condition.
0

Featured Post

Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article runs through the process of deploying a single EXE application selectively to a group of user.
This article outlines the process to identify and resolve account lockout in an Active Directory environment.
This tutorial will show how to push an installation of Backup Exec to an additional server in both 2012 and 2014 versions of the software. Click on the Backup Exec button in the upper left corner. From here, select Installation and Licensing, then I…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

803 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question