hi guys

So I got some help from EE experts to run a command in Exchange shell to export all mailbox statistics/data.

One of the important things is for me to work out the LastLoggedOnTime so that I can segregate the oldest mailboxes from the actively used ones.

I ran a tool called Inactive Users Tool by Solarwinds and exported it. When I compare the last logged on time of one user from the Exchange shell formula to the data exported from the Solarwinds one, they are different. I have many users who have not logged on for years, but somehow are showing as two days ago in the Shell statistics.

Perhaps the Solarwinds tool is using the Inactive users by looking at a different attribute?

Any ideas on why that would be?

Thanks for helping
Fellow EE's, I am looking for some software solution suggestions for auditing asset warranties. Below is a list of desired functions that I would like to have and if anyone has something that can do some of these please feel free to share, thanks in advance!

1. Start/Ship Date, End Date: This is critical. I need to know when a tracked asset is nearing its warranty end to approach extension or replacement.

2. Vendor Neutral: If possible I need a system that can check different vendors if possible. Dell is typically an easy solution which I typically deal with but some clients have non dell systems and servers which causes extra effort to track and adjust.

3. Event Triggers: If possible it would be able to also send notifications to a desired email account or notification outlining a pre-configured time period prior to expiration. This early warning system would be important to give the client time to budget and respond accordingly instead of last minute.

4. System Type Flexibility: Most devices like workstations, laptops, and servers have the ability to check the vendor. I also need the ability to manually add details and fields for systems that may not have a system that can be tracked manually. This would be important for UPS/Battery Backups, Switches, AP's, etc. If it cannot be que'd by an automation system with agents I need to add to the list.

5. Technician Assignments: Would love the opportunity to set the systems into clusters like for specific …
Logon Login failed for user . Reason: Attempting to use an NT account name with SQL Server Authentication.

I have a Windows domain account like gooled\solarexpert that is set as sysadmin on mssql database, connect to Solarwind application.  The application connection is not successful. I check the database log, it is "....Reason: Attempting to use an NT account name with SQL Server Authentication."

I use this account gooled\solarexpert  on other database with same setting, it's no issue to connect. Most are nnncet5ed successfully, only few of them is with this error message.

Any advice?

I have tried almost all suggestions posted from web about this error, it still doesn't work.

My server is mssql 2012
We purchased some new Dell PowerConenct N4032 switches and I want to configure them with SNMPv3 to talk to our Solarwinds product. However, I cant seem to find a solid post or instructions on how to do this. The solarwinds part all i need to do is give it the IP of the switch, but I'm lost on the switch configuration. I want it to be secure but i don't need anything complicated. I have never setup a V3 of SNMP.
$Mount Drive Monitor is above threshold and currently 2 from solar winds

this is for my mail box server

what does this mean
A few years back I had SolarWinds Real-Time NetFlow Analyzer working with my Cisco 3750x switch. Recently we had some suspicious traffic so I installed a new version of the software on a Win 10 machine. I can connect through the software to my switch, I can see all of the interfaces but none of them show NetFlow enabled. When I click on the interface I want to monitor then click "Start Flow Capture" I get a 'NetFlow is not detected on the selected interface'.

How do I get this port configured correctly to capture NetFlow data?

Additional Facts:
IOS version 15.0(2)SE6

Config on switch:
int gig <port to be monitored>
ip flow ingress
ip flow egress

ip flow-export source <port to be monitored>
ip flow-export version 5
ip flow-export destination <IP of my Win 10 machine> 2055

Open in new window

Per this thread- 
I tried to run the ip nbar protocol-discovery and the ip route-cache flow on the port to be monitored. Neither of those commands were accepted on that port.

Any help is appreciated.

I've had users on other forums attempt to help me by pointing me to towards flexible netflow configurations that use the command ip flow monitor <name of monitor> input applied to the interface they want to monitor. My switch does not allow flexible netflow to be applied to non-service module ports. What I'm trying to monitor are the standard gigabit interfaces.

The netflow commands I can apply to those standard interfaces are those listed above: ip flow ingress and ip flow egress. How do I get netflow analysis that way?
I converted the FTP SERVER to use SFTP. I am able to connect using winSCP but it always put me into the root directory. How i view my my virtual directories int he FTP.
I install solarwinds free sftp the server.
I need my ftp users to be able to reach their proper directories. what i can do now?

I am running an issue with our Solarwinds Orion server not producing any reports and values showing 0 for CPU and Memory usage for even weekly report. This issue started ever since we migrated from 2012 server to 2016 server. The database was simply moved to the new server. We are on VMware 5.5 environment.

Upon checking more, some nodes were showing not managed so I went ahead and enabled the hosts as managed nodes. Now the host is enabled for VMware VCS polling auth but the windows servers within the hosts need VCS polling authentication.  For these windows machines I tried checking the box where it says VCS auth and input VMware root credentials for the host but it kept failing with message invalid auth. I am sure that I am entering right credentials.

- The reports are showing 0%, we checked a sample node and I found out that there is no data in the database (VMStatistics table)
- I went to the web console and checked the vmware polling, found out that the guest is not managed in Orion

- To get the data collection working, I need to enable VMware polling for the nodes

Does the windows nodes within VMware host also require VCS polling authentications ?

Sorry I am new to solar winds and can use some help.

Thanks in advance.
I have been using KiwiSys Logs for some time now for network logging.

I'd like to send Windows Event Logs to KiwiSysLog server BUT i cannot get the "Security" to populate in the "matching events records" section.

I'd like to log event 4624 which is for logins .. when I select "Security" from my tree on the left and all default values on the right -- I get nothing populating in the preview of matching event records.

I untick security, tick "System" and that loads events? Maybe I'm missing something but any help is much appreciated.

Thank you
This maybe a stupid question, however I want to make sure.

If I run a port scan utility, say from SolarWinds for example against a Cisco ASA, will this trigger any kind of threat response from the ASA?  IE will it black list the IP for a short time that is running the port scan?  Are there other ramifications for doing this?

I am thinking it will just drop the traffic or perhaps do nothing, but I am not well versed on what it will do.

Thanks for the feedback.
Downloaded Solar Winds inactive user account removal tool and ran it on my Windows 2008 Server.  On the last logon column, it shows the entry of "Never Logged in"  Does this mean I can remove all of these users that say this?  I ran this as "inactive since 1/1/2017
Appreciate step by step guide on how we can use Solarwinds to

a) issue commands in batch (ie to all the hundreds of servers & Cisco devices)
    & collect back the outputs all in one file   : I used to have one HP central management tool that could do this

b) the OS commands I plan to send out are:
   Windows are :  "hostname; wmic qfe list"
   Solaris are     :  "uname -a; showrev -p"
   Cisco are       :  "hostname; show ver"

Our MS SCCM is used for PCs only so can't use it
Hi all,

I created a rule in Exchange 2010 HT that prepends subject line for all emails coming in from outside the organization. The rule is working fine. But we have our internal solarwinds monitoring server that sends an email whenever a server goes down or gets rebooted and emails from solarwinds are getting their subject lines prepended which probably means that for the Exchange server, those emails qualify as coming in from outside the organization.

Any idea why is that happening ? That server is using an email address to deliver email alerts.

Thanks and Merry Christmas.
hi guys,

I've just installed a trial of WhatsUP Gold for server monitoring etc. However, I also want to be able to do hardware diagnosis, which this application doesn't really seem to be able to do very well. I don't have the money to buy Solarwinds either.

Don't HP have their own tools that one can install? I literally have a server in Hong Kong that has had a fan failure apparently, but I have no way of knowing that unless I install the right tools. Any ideas?

Thanks for helping
I need to produce daily summary reports of all errors happening on Domain Controllers - security and replication.
Occurrence number, the times of the first and last encounters.
Does Orion have such capability?
Our Solarwinds admin guy said he can't set up rules unless a sample event is sent to solarwinds.

We have about 70 events from an app : so far the apps team only could get someone to login/logoff
to simulate once such event but for the other 69 events, need to do reboot etc which they can't
unless there's downtime.

Attached is the full list of snmp events our apps team gave to me.

I'm wondering :

a) what exactly our solarwinds admin is expecting or hinders him from creating rules?  He's
    elusive & extremely busy (ie no time to show me)

b) are there free tools like snmpwalk etc which I could trigger sample events?

I'm sure Cisco devices & Windows events which are currently sent to the solarwinds will
go through the same process to be monitored but really doubt the network chaps will
send the 100+ Cisco event types to Solarwinds for them to be monitored.
I want to know how to integrate Chocolatey into SolarWinds N-Central?

Any suggestions would be appreciated.

Please advise. I have a Dell PowerEdge T420 where the hardware is fine but SNMP for Solarwinds MSP Remote Monitoring is reporting a battery issue  for:
DELL PERC H310 SCSI - "Dell - RAID - Storage Management" and "Dell - Battery State - State of battery" is reporting "Unsupported SNMP variable. Everything matches the other working servers. However I want to compare the OIDs from the Dell Server vs. the Reporting Software. For the monitoring software it is reporting (battery) OID:
Please advise
FYI: Could not find matching hardware when I ran the SNMP Walk on the problem server unless I am looking for the wrong thing? Searched for "battery" and "RAID"
Forgive the length, but I want to provide a detailed description of the problems I'm running into what I've checked so far:

I purchased Solarwinds DameWare to help with supporting PCs in-house. I started running into problems where it would not connect to some computers. Other computers worked fine. One of the error messages on DW said something along the lines of "The computer you're trying to connect to is actually a different computer. Do you want to continue?" So I started troubleshooting and running into some strange DNS weirdness.

Starting with the two computers involved with the error above, I pinged both by name from my PC and they both returned the same IP address. When I went to those PCs, one of them had that IP and the other had a different IP. Digging further, I started running into a few more computers that when pinged by name returned incorrect/duplicate IPs.

Some research indicated I might not have DNS scavenging turned on. Odd thing is, everything worked fine before installing DameWare. I was using UltraVNC for report desktop support, and now that won't connect to these problem PCs either. So I started checking my DNS settings on the Domain Controller. (I only have one DC and it is the only thing managing DNS that I am aware of.)

Logging into the Domain Controller > Server Manager > Tools > DNS
When I look in the tree under my server > Forward Lookup Zones > my domain, I'm seeing a list that includes records that are months or years out of…






