<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Eventvwr command line in Windows Server 2003</title>
    <link>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119649#M4776</link>
    <description>Thank you all.&lt;BR /&gt;Lots of information to manage.&lt;BR /&gt;I didn't know about the dumpEL.exe utility. &lt;BR /&gt;&lt;BR /&gt;Thanks again.</description>
    <pubDate>Tue, 19 Feb 2008 23:41:02 GMT</pubDate>
    <dc:creator>Edgar Zapata</dc:creator>
    <dc:date>2008-02-19T23:41:02Z</dc:date>
    <item>
      <title>Eventvwr command line</title>
      <link>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119641#M4768</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;Is there a way to get eventvwr save either Application or System LOG through a DOS command?&lt;BR /&gt;&lt;BR /&gt;Thanks.&lt;BR /&gt;</description>
      <pubDate>Thu, 20 Dec 2007 16:00:43 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119641#M4768</guid>
      <dc:creator>Edgar Zapata</dc:creator>
      <dc:date>2007-12-20T16:00:43Z</dc:date>
    </item>
    <item>
      <title>Re: Eventvwr command line</title>
      <link>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119642#M4769</link>
      <description>Why do you want this?&lt;BR /&gt;&lt;BR /&gt;Dan</description>
      <pubDate>Thu, 20 Dec 2007 18:06:41 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119642#M4769</guid>
      <dc:creator>Daniel Leblanc</dc:creator>
      <dc:date>2007-12-20T18:06:41Z</dc:date>
    </item>
    <item>
      <title>Re: Eventvwr command line</title>
      <link>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119643#M4770</link>
      <description>Hi,&lt;BR /&gt;We need to automate as much as possible the collecting of data when an incident ocurrs.&lt;BR /&gt;&lt;BR /&gt;We are having a recurrent incident and we need to stablish a pattern of behavior.&lt;BR /&gt;&lt;BR /&gt;Thanks.&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Thu, 20 Dec 2007 18:25:10 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119643#M4770</guid>
      <dc:creator>Edgar Zapata</dc:creator>
      <dc:date>2007-12-20T18:25:10Z</dc:date>
    </item>
    <item>
      <title>Re: Eventvwr command line</title>
      <link>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119644#M4771</link>
      <description>Did you try think of applying HP SIM or if you need Event Sentry is a good monitoring for event ,but but if i knew what was you want to get info,Event sentry cost $ and HP Sim is free and very powerfull (easy to use)is can monitore Hardware problem and software, it can even warn you when a service goes down or up.&lt;BR /&gt;&lt;BR /&gt;Dan</description>
      <pubDate>Thu, 20 Dec 2007 19:03:37 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119644#M4771</guid>
      <dc:creator>Daniel Leblanc</dc:creator>
      <dc:date>2007-12-20T19:03:37Z</dc:date>
    </item>
    <item>
      <title>Re: Eventvwr command line</title>
      <link>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119645#M4772</link>
      <description>definitly yes,&lt;BR /&gt;pleas checke the Help and Support Center on your Windwos 2003 Server and search for Command-line reference A-Z.&lt;BR /&gt;There you can find under e "Eventcreate"; "Eventquery"; "Eventtriggers"; "Eventcmd".&lt;BR /&gt;I think these are helpful tools, but dont forget to WSH (Windows Scripting Host) and the new Windows Powershell (this will be the future environment for scripting Windows Systems and will be so powerful as UNIX-Shell).</description>
      <pubDate>Fri, 21 Dec 2007 05:18:07 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119645#M4772</guid>
      <dc:creator>clausw</dc:creator>
      <dc:date>2007-12-21T05:18:07Z</dc:date>
    </item>
    <item>
      <title>Re: Eventvwr command line</title>
      <link>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119646#M4773</link>
      <description>Your best bet really is just to get an event log archiver/analyzer. They vary widely in price and capability and the one that I like by far is manage engine event log analyzer. &lt;A href="http://manageengine.adventnet.com/products/eventlog/index.html" target="_blank"&gt;http://manageengine.adventnet.com/products/eventlog/index.html&lt;/A&gt; &lt;BR /&gt;&lt;BR /&gt;This product also analyzes events and can alert on them but if you're really interested in that, get something like MS MOM/SCOM (HP openview is, err, expensive and more complex but competes with SCOM). Its cheap compared to others and free for 5 hosts.&lt;BR /&gt;&lt;BR /&gt;It runs a service on a central host that polls remote servers (and it can syslog firewalls, etc) say every 5 min and sucks up events. Then pushes to a mysql database to store events and can archive them out from that db to .zip files which can be imported later. You can then keep the storage requirements down.&lt;BR /&gt;&lt;BR /&gt;The thing I like most is that since it's in a real database you can use both the standard reports with the product as well as write your own SQL queries if you like to get just about anything you want.&lt;BR /&gt;&lt;BR /&gt;This is all important because some servers can literally blow through a 100mb limit on a log file in hours so it's good to know you've got everything. You can go back 3 months ago to see who deleted a file etc. Nice.</description>
      <pubDate>Fri, 21 Dec 2007 14:09:48 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119646#M4773</guid>
      <dc:creator>Peter Turek</dc:creator>
      <dc:date>2007-12-21T14:09:48Z</dc:date>
    </item>
    <item>
      <title>Re: Eventvwr command line</title>
      <link>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119647#M4774</link>
      <description>&lt;BR /&gt;strComputer = "."&lt;BR /&gt;&lt;BR /&gt;dtmThisMonth = Month(Date)-1&lt;BR /&gt;strBackupName = dtmThisMonth&lt;BR /&gt;strComputer = "."&lt;BR /&gt;Set objWMIService = GetObject("winmgmts:" _&lt;BR /&gt;    &amp;amp; "{impersonationLevel=impersonate,(Backup)}!\\" &amp;amp; _&lt;BR /&gt;        strComputer &amp;amp; "\root\cimv2")&lt;BR /&gt;Set colLogFiles = objWMIService.ExecQuery _&lt;BR /&gt;    ("Select * from Win32_NTEventLogFile where LogFileName='Security'")&lt;BR /&gt;For Each objLogfile in colLogFiles&lt;BR /&gt;    objLogFile.BackupEventLog("c:\scripts\results\" &amp;amp; strBackupName &amp;amp; _&lt;BR /&gt;        "_security.evt")&lt;BR /&gt;    objLogFile.ClearEventLog()&lt;BR /&gt;Next&lt;BR /&gt;</description>
      <pubDate>Tue, 19 Feb 2008 20:56:05 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119647#M4774</guid>
      <dc:creator>Lucky Luciano</dc:creator>
      <dc:date>2008-02-19T20:56:05Z</dc:date>
    </item>
    <item>
      <title>Re: Eventvwr command line</title>
      <link>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119648#M4775</link>
      <description>You can also use the resource kit utility called dumpEL. This dumps to csv and other formats. easy to use from cmd.</description>
      <pubDate>Tue, 19 Feb 2008 21:12:02 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119648#M4775</guid>
      <dc:creator>Peter Turek</dc:creator>
      <dc:date>2008-02-19T21:12:02Z</dc:date>
    </item>
    <item>
      <title>Re: Eventvwr command line</title>
      <link>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119649#M4776</link>
      <description>Thank you all.&lt;BR /&gt;Lots of information to manage.&lt;BR /&gt;I didn't know about the dumpEL.exe utility. &lt;BR /&gt;&lt;BR /&gt;Thanks again.</description>
      <pubDate>Tue, 19 Feb 2008 23:41:02 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119649#M4776</guid>
      <dc:creator>Edgar Zapata</dc:creator>
      <dc:date>2008-02-19T23:41:02Z</dc:date>
    </item>
    <item>
      <title>Re: Eventvwr command line</title>
      <link>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119650#M4777</link>
      <description>Edgar,&lt;BR /&gt;Not sure if you are looking for a pay vs. free product, but I have used GFi EventsManager.  &lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.gfi.com/eventsmanager/" target="_blank"&gt;http://www.gfi.com/eventsmanager/&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;  Like most of these products, it runs on SQL and has a Web-based front end making it accessible from anywhere.&lt;BR /&gt;&lt;BR /&gt;The nice thing about a product like this (or any of the others mentioned), Edgar, is that it will go and collect all logs from all of your servers and store them in a central location.  This is better for security (the logs are no longer on the remote system), management, being proactive, etc.  &lt;BR /&gt;&lt;BR /&gt;I also currently use HP SIM and find it an excellent free solution for inventory, alerting, reporting, etc.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 27 Feb 2008 12:32:37 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119650#M4777</guid>
      <dc:creator>Gfuss</dc:creator>
      <dc:date>2008-02-27T12:32:37Z</dc:date>
    </item>
    <item>
      <title>Re: Eventvwr command line</title>
      <link>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119651#M4778</link>
      <description>I was looking for a command line utility, so dumpel is what I was looking for.&lt;BR /&gt;&lt;BR /&gt;Tnks.</description>
      <pubDate>Thu, 28 Feb 2008 11:36:58 GMT</pubDate>
      <guid>https://community.hpe.com/t5/windows-server-2003/eventvwr-command-line/m-p/4119651#M4778</guid>
      <dc:creator>Edgar Zapata</dc:creator>
      <dc:date>2008-02-28T11:36:58Z</dc:date>
    </item>
  </channel>
</rss>

