I have a question, I want to try monitoring the Windows Eventlog and monitoring a specifique ID and specific event
for exemple I want to monitoring specific GPO.
I used this command
./check_nrpe -H 192.168.102.245 -p 5666 -c CheckEventLog -a file=system MaxWarn=1 MaxCrit=1 "filter=generated > -24h AND severity = 'error' AND id=%ID-event% "
but i'm no sure about my result.
which filter I need to used to check the value
and how to do that ?
for example I have a specifique GPO who name " TOTO", and i want to verify that this GPO is applied on the system.
I used Nagios core 4.0.7
and NSclient 4.1.105