We help IT Professionals succeed at work.

windows clients specific event log forwarding via email

I am searching for a method to get email alerts from the windows machines when hard drive errors occurs, like developing bad sectors. clients are running Windows 8.1

any ideas would be highly welcomed.
Comment
Watch Question

Distinguished Expert 2019

Commented:
What does the environment consist for? Centrally managed, event log forwarding to a central server that has a process going through the log.
Alternatively, SNMP addition feature, configuring eventwin to forward the event log system disk events to an snmptrap destination that in turn on receipt of the event will generate the notification including via email...


Distinction deals with centralizing versus scanning individual computers for looking for events.
Imal UpalakshithaIT System Administrator

Author

Commented:
Server 2012R2 domain environment. actually i am not planing to centrally manage all logs. but i would happy if i can receive emails from individual machines when disk error occurs on them.
Distinguished Expert 2019

Commented:
IMHO, it is a more straightforward to centralize the logs and act one server, versus trying to implement it on each workstation.
You can add if not already SMTP service on the server, using powershell script on a schedule. You could setup a script vbscript, powershell running on the server remotely pulling the workstations using wmi or ... The issue in such deals with the delay because the system might not be up during the scan that the centralize, event forwarding overcomes..

The script scouring the log, either generates a single email per event, or a single email with all occurances per processing of the script.

There are monitoring tools with email notification that might be a consideration.
Distinguished Expert 2019
Commented:
A simple solution is to use group policy preference items to deploy a scheduled task. The task would use a command line mailer like blat.exe or powershell itself. The task would be triggered by the events that a disk error writes, which are:
System Event Log, source disk, ID 7, 11, 2013
Imal UpalakshithaIT System Administrator

Author

Commented:
could you please tell me how to process it?

thanks.
Distinguished Expert 2019

Commented:
I described the task already. The command would go (for example):
Blat -install yourmailserver %username%@yourdom.local
Blat -body "someMessageHere" -to logging@yourdom.local -server yourmailserver -debug -timestamp -subject "Diskerror"

Open in new window


Blat from http://www.blat.net/
Imal UpalakshithaIT System Administrator

Author

Commented:
great & simple solution. i tested with sendemail.exe & works well.
thanks for all sharing knowledge.