<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:series="http://unfoldingneurons.com/"
	>

<channel>
	<title>4sysops &#187; monitoring</title>
	<atom:link href="http://4sysops.com/archives/tag/monitoring/feed/" rel="self" type="application/rss+xml" />
	<link>http://4sysops.com</link>
	<description>For Windows Administrators</description>
	<lastBuildDate>Wed, 08 Feb 2012 20:25:19 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
<image>
    <title>4sysops</title>
    <url>http://4sysops.com/4sysops-rss.png</url>
    <link>http://4sysops.com</link>
    <width>143</width>
    <height>49</height>
    <description>4sysops.com</description>
    </image>		<item>
		<title>Poll: Are you currently using a monitoring solution?</title>
		<link>http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/</link>
		<comments>http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/#comments</comments>
		<pubDate>Tue, 17 Jan 2012 19:50:33 +0000</pubDate>
		<dc:creator>Michael Pietroforte</dc:creator>
				<category><![CDATA[Poll]]></category>
		<category><![CDATA[monitoring]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7806</guid>
		<description><![CDATA[In this poll, I'd like to find out what role monitoring plays in your network and the kind of tools you are using.]]></description>
			<content:encoded><![CDATA[<p><strong><i>In this poll, I&#8217;d like to find out what role monitoring plays in your network and the kind of tools you are using.</i></strong></p>
<p>I don&#8217;t want to say much more about this poll at the moment because I somehow think that I influence readers with my introductory articles. I think, the questions speak for themselves. So, be a worthy 4sysops citizen and fulfill your voting obligations. <img src='http://4sysops.com/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> </p>
<p>Note that you can select more than one answer. Feel free to tell us what monitoring solution you are using in a comment below.</p>
<p>Note: There is a poll embedded within this post, please visit the site to participate in this post's poll.</p>
Author: Michael Pietroforte
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-5-network-monitoring/" title="SCOM 2012 review &#8211; Part 5: Network Monitoring (December 19, 2011)">SCOM 2012 review &#8211; Part 5: Network Monitoring</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/feed/</wfw:commentRss>
		<slash:comments>11</slash:comments>
		</item>
		<item>
		<title>SCOM 2012 review &#8211; Part 8: Dashboards</title>
		<link>http://4sysops.com/archives/scom-2012-review-part-8-dashboards/</link>
		<comments>http://4sysops.com/archives/scom-2012-review-part-8-dashboards/#comments</comments>
		<pubDate>Wed, 28 Dec 2011 19:05:57 +0000</pubDate>
		<dc:creator>Paul Schnackenburg</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[system center]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7683</guid>
		<description><![CDATA[In this final part of the eight part technical <a href="http://4sysops.com/archives/scom-2012-review-part-1-installation/">review of SCOM 2012</a> we’ll look at the new dashboard functionality and how they can be displayed in different environments, including SharePoint 2010 and we’ll add some final remarks around SCOM 2012.]]></description>
			<content:encoded><![CDATA[<p><strong><i>In this final part of the eight part technical <a href="http://4sysops.com/archives/scom-2012-review-part-1-installation/">review of SCOM 2012</a> we’ll look at the new dashboard functionality and how they can be displayed in different environments, including SharePoint 2010 and we’ll add some final remarks around SCOM 2012.</i></strong></p>
<p>While monitoring systems like SCOM collects vast amounts of data, it’s not a matter of collecting the data; it’s a matter of filtering and displaying the right data to the right people at the right time.</p>
<p>There are three primary ways of doing this, you can have <strong>alerts</strong> that tell you that something is wrong and needs attention, <strong>reports</strong> showing historical data and <strong>dashboards</strong> that show actionable, real time data in a visual fashion that can be personalised.</p>
<p>Whereas earlier versions of SCOM had Views and simple dashboards, SCOM 2012 takes it to a whole new level. No longer do you need to group objects before creating a view and the new wizard for creating dashboards makes it very easy to display exactly the right information in the right way. There’s no programming necessary to create your own dashboards.</p>
<p>The wizard is available in both the native console and the web console and the resulting dashboards can be displayed in the Console, the Web Console and SharePoint 2010 (see below) and they look identical in all three environments. SCOM 2012 can have nested dashboards where drilling down into particular data lead to another dashboard.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-review-Dashboard-Wizard-Layout.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-review-Dashboard-Wizard-Layout.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="SCOM 2012 review - Dashboard Wizard Layout" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-review-Dashboard-Wizard-Layout_thumb.png" alt="SCOM 2012 review - Dashboard Wizard Layout" width="604" height="443" border="0" /></a></p>
<p align="center"><em>Creating custom Dashboards is not only useful, it’s also very easy with the new wizard.</em></p>
<p>There are three steps to creating a dashboard in SCOM 2012: first select a layout based on the number of cells or columns desired; then add a widget in each cell (types include Alert, Performance and State) and finally configure each widget with a particular scope and criteria as well as display preferences. The Performance widget can now display data from either the Operational or DataWarehouse databases; increasing its usefulness. Apart from the comprehensive built in dashboards third party management packs can add feature packs to support their own widgets. Both SQL Server and Hyper-V have dashboards in the works.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-review-Dashboard-Add-Widget-Wizard.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-review-Dashboard-Add-Widget-Wizard.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="SCOM 2012 review - Dashboard Add Widget Wizard" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-review-Dashboard-Add-Widget-Wizard_thumb.png" alt="SCOM 2012 review - Dashboard Add Widget Wizard" width="604" height="444" border="0" /></a></p>
<p align="center"><em>For each cell define what widget you want and configure it’s properties.</em></p>
<p>To extend the reach of SCOM to non-IT personnel dashboards can now be integrated into SharePoint 2010 using a web part. If the people who are going to view the dashboards aren’t SCOM users the web part can be configured to user shared credentials. The integration works with SharePoint Server 2010 Standard and Enterprise as well as the free Foundation version. In the latter case you can only deploy the web part in the same domain as the web console and you won’t be able to use shared credentials.</p>
<p>The web part comes in the <strong>Microsoft.EnterpriseManagement.SharePointIntegration.wsp</strong> and is installed using the <strong>install-OperationsManager-DashboardViewer.ps1</strong> PowerShell script. The web part is linked to a web console so you’ll need to obtain the exact URI for the dashboard you want displayed by navigating to it in the Web console and copying it from the address bar. If you get an error message that the ticket has expired you need to synchronise the clocks on the server running the Web console and the SharePoint server, they can’t be more than five seconds apart.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-review-Dashboard-Finished.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-review-Dashboard-Finished.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="SCOM 2012 review - Dashboard Finished" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-review-Dashboard-Finished_thumb.png" alt="SCOM 2012 review - Dashboard Finished" width="604" height="647" border="0" /></a></p>
<p><em>The final dashboard in all its glory, best of all it looks the same in all three environments.</em></p>
<p>Personalisation of dashboards by a user are now stored in the database and thus roam with the user to different PCs and environments, in SCOM 2007 R2 they were stored in the registry on the local machine and thus didn’t follow the user. Dashboards in the web console all have a distinct URL, this also makes it easy to disseminate information to non-technical users, as they can simply bookmark particular dashboards.</p>
<p>The most popular built in dashboard might be the new Management Group Health Dashboard console, also known as the “coffee break”, so named by the developers because it’s designed to give SCOM operators a quick overview of the health of their environment, thus answering the question “can I take a coffee break?”. It monitors both the infrastructure and the functions delivered by the SCOM system.</p>
<h2>Conclusion</h2>
<p>Although there’s no native support for Windows clustering and we’d like to see deeper monitoring of clustered Java applications in JEE overall SCOM 2012 is a thorough revamp with some very useful new features. The simplified infrastructure and no-brainer High Availability will be welcome in all but the smallest environments while the network monitoring should make all IT Pros troubleshooting lives easier. The extended *nix monitoring and JEE monitoring will be handy in the right environment but perhaps the most intriguing feature will be seeing how SC Orchestrator will glue the entire Systems Center suite together.</p>
<h2>Resources</h2>
<p><a href="http://blogs.technet.com/b/momteam/">Official SCOM blog</a></p>
<p><a href="https://connect.microsoft.com/OpsMgr">Operations Manager 2012 on the Connect site</a> (Windows Live ID login required)</p>
Author: Paul Schnackenburg
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-5-network-monitoring/" title="SCOM 2012 review &#8211; Part 5: Network Monitoring (December 19, 2011)">SCOM 2012 review &#8211; Part 5: Network Monitoring</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/scom-2012-review-part-8-dashboards/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<series:name><![CDATA[SCOM 2012]]></series:name>
	</item>
		<item>
		<title>SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</title>
		<link>http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/</link>
		<comments>http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/#comments</comments>
		<pubDate>Mon, 26 Dec 2011 19:10:16 +0000</pubDate>
		<dc:creator>Paul Schnackenburg</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[system center]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7667</guid>
		<description><![CDATA[In this seventh part of the eight part technical <a href="http://4sysops.com/archives/scom-2012-review-part-1-installation/">review of SCOM 2012</a> we’ll look at cross platform monitoring of Unix and Linux and some welcome improvements there as well as how the new Java Enterprise Edition (JEE) application server monitoring fits in.]]></description>
			<content:encoded><![CDATA[<p><strong><i>In this seventh part of the eight part technical <a href="http://4sysops.com/archives/scom-2012-review-part-1-installation/">review of SCOM 2012</a> we’ll look at cross platform monitoring of Unix and Linux and some welcome improvements there as well as how the new Java Enterprise Edition (JEE) application server monitoring fits in.</i></strong></p>
<h2>Unix and Linux monitoring in SCOM 2012</h2>
<p>Monitoring Unix and Linux (*nix) machines is necessary in larger environments because there’s almost always some *nix servers; even in mostly Windows shops and SCOM 2012 brings some very important improvements. The Unix/Linux monitoring covers HP-UX 11i v2 / v3 on PA-RISC and IA64, Sun Solaris 9 on SPARC as well as 10 on SPARC and x86, Red Hat Enterprise Linux 4, 5 and 6 on both x86 and x64, Novell SUSE Linux Enterprise Server 9 on x86, 10 SP1 and 11 on both x86 and x64 along with IBM AIX 5.3, 6.1 and 7.1 on POWER.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Linux-Monitoring.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Linux-Monitoring.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="SCOM 2012 - Linux Monitoring" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Linux-Monitoring_thumb.png" alt="SCOM 2012 - Linux Monitoring" width="601" height="455" border="0" /></a></p>
<p align="center"><em>SSCOM 2102 Linux monitoring</em></p>
<p>Compared to SCOM 2007 R2; the 2012 version drops support for Solaris 8; Solaris 11 being very new might make it into RTM, there’s also added support for the iNode filesystem. Preliminary scaling numbers indicate that you can have up to 6000 Unix / Linux computers per management group if you have 50 consoles open, 10 000 per MG if you have 25 open consoles.</p>
<p>SCOM 2007 R2 uses two accounts for monitoring *nix, the Monitoring account is used for 85-90% of the monitoring and was an unprivileged account whereas the Action account that’s used for Syslog gathering and agent maintenance needs to have root credentials on managed systems. SCOM 2012 “fixes” this issue that has caused major issues for security conscious *nix administrators by adding support for sudo and SSH keys.</p>
<p>Sudo support means that a standard account can be setup on managed machines with exactly the required amount of permissions and the latter ensures that all agent maintenance that’s done via SSH is secure. SSH keys need to be in Putty format, if you’re using OpenSSH the keys need to be converted with <a href="http://winscp.net/eng/docs/ui_puttygen">PuttyGen</a>.</p>
<p>SCOM 2012 also adds new templates for customized monitoring, the new Process Monitor lets you monitor by count (number of processes for instance) and identifies processes by command line arguments (instead of all processes being called “java” for instance) as well as accepting regular expression input for filtering.</p>
<h2>Java Enterprise Edition monitoring in SCOM 2012</h2>
<p>Brand new in SCOM 2012 is comprehensive support for monitoring Java Enterprise Edition (JEE, formerly known as J2E) application servers. The four most common platforms are supported; IBM Websphere 6.1 and 7; RedHat JBoss 4.2, 5.1 and 6; Oracle Weblogic 10g Rel3 and 11g Rel1; and the open source Apache Tomcat 5.5, 6 and 7 on both Windows and Linux with Websphere also supported on AIX and Weblogic on Solaris.</p>
<p>When you’ve imported the Java Management packs matching your environment the application servers will be automatically discovered and standard monitoring will let you know if the application server is running and if resource utilization is within defined thresholds.</p>
<p>If deeper monitoring is needed Microsoft offers an Open Source Java Management Extension (JMX) application called BeanSpy (known during the beta period as JMX Extender) that you load on the application server, it reports to SCOM via either HTTP or HTTPS, with our without basic authentication. BeanSpy being Open Source should allay fears that some companies might have about Microsoft code running on their application servers.</p>
<p>BeanSpy communicates with MBean counters (which are a bit like performance counters in Windows but more feature reach) to monitor individual applications running, frequency and time spent on memory garbage collection as well as over performance of the application server. Memory garbage collection is particularly important as the application is unresponsive during this period.</p>
<p>For custom monitoring SCOM 2012 offers two templates for building your own monitoring management packs; one for Monitoring and one for Performance; both lets you monitor any simple MBean property.</p>
<p>In the next part in the SCOM 2012 review series we’ll look at the vastly improved Dashboard functionality in SCOM 2012 and how to integrate DashBoards into SharePoint.</p>
Author: Paul Schnackenburg
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-5-network-monitoring/" title="SCOM 2012 review &#8211; Part 5: Network Monitoring (December 19, 2011)">SCOM 2012 review &#8211; Part 5: Network Monitoring</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
	
		<series:name><![CDATA[SCOM 2012]]></series:name>
	</item>
		<item>
		<title>Notifications and Custom Commands in Nagwin/Nrpe</title>
		<link>http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/</link>
		<comments>http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/#comments</comments>
		<pubDate>Fri, 23 Dec 2011 19:05:54 +0000</pubDate>
		<dc:creator>Justin Shin</dc:creator>
				<category><![CDATA[Tips]]></category>
		<category><![CDATA[monitoring]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7661</guid>
		<description><![CDATA[This third part in our <a href="http://4sysops.com/archives/free-nagwin-nagios-for-windows/">Nagwin series</a> focuses on configuring Nagios contacts and notifications for server status.]]></description>
			<content:encoded><![CDATA[<p><strong><i>This third part in our <a href="http://4sysops.com/archives/free-nagwin-nagios-for-windows/">Nagwin series</a> focuses on configuring Nagios contacts and notifications for server status.</i></strong></p>
<p>What’s better than being able to check on server health status through the Nagios monitoring views? Having Nagios notify you of server health status automatically! If you have ever had a server fail, shut down, or hang—only to learn about it later from disgruntled users—you’ll understand why this feature is so valuable.</p>
<h2>Creating and Managing Contacts</h2>
<p>Nagios can notify you of certain changes or issues in server configuration that may occur. Sometimes you want different alerts sent to different email addresses. For example, you may want to send alerts about a database server’s health to the DBA, and send all other alerts to the systems administrator. To define a single contact, navigate to your ICW root and go to folder /etc/nagios/nagwin. Open the contacts.cfg file in your favorite text editor. Let’s get started on defining contacts. A contact definition has the following form:</p>
<pre>
define contact {   
contact_name           systems_admin_1; short name of contact
usegeneric-contact     default contact template
alias                  Johnny Bernard Doe; full name
email                  jdoe@mycompany.com; email address
}</pre>
<p>The “use” directive informs Nagios of which contact you would like to use. For now, use the default generic-contact option; we will explore contact templates in a bit.</p>
<p>Once you create several contacts, you may want to group them together, like you would with an email alias. Suppose we have four contacts: two admins and two DBAs. We might want to create two contact groups: sysadmins and dbadmins.</p>
<pre>
define contactgroup {    
contactgroup_name sysadmins;                 system alias
alias Systems Administrators;                full name of alias
members systems_admin_1,systems_admin_2;     comma separated list
}
define contactgroup {
contactgroup_name                            dbadmins;
alias                                        Database Administrators;
members                                      dba_1,dba_2;
}
</pre>
<h2>Configuring Notifications</h2>
<p>Nagios allows the administrator to configure notifications at different levels of granularity, including, but not limited to:</p>
<ul>   
<li>Who is being notified </li>
<li>Type of notification event (host status vs. service) </li>
<li>How severe the event is (from service flapping to host downtime) </li>
<li>When the event occurs </li>
</ul>
<p>Notification options are defined in the templates.cfg file using host, service, and contact template directives. <span style="text-decoration: underline"><a href="http://nagios.sourceforge.net/docs/3_0/objectdefinitions.html">You can find an exhaustive list of directives with explanations here</a></span>, but let’s start out by exploring some simplistic templates and directives.</p>
<h2>Contact Templates</h2>
<p>Contact templates allow us to define shared notification attributes for different contacts. Some contact template directives include:</p>
<ul>   
<li><em>service_notification_period:</em> When the contact can receive <em>service</em> notifications </li>
<li><em>host_notification_period:</em> When the contact can receive <em>host</em> notifications </li>
<li><em>service_notification_options:</em> What kinds of service notifications the contact receives </li>
<li><em>host_notification_options:</em> What kinds of host notifications the contact receives </li>
<li><em>service_notification_commands:</em> How service notifications are handled </li>
<li><em>host_notification_commands:</em> How host notifications are handled </li>
</ul>
<p>We can put together an “admin” contact that receives only host notifications on a 24&#215;7 basis and for all types of notification events:</p>
<pre>
define contact {    
name                             generic-admin-contact;
service_notifications_enabled    0; don’t enable service notes    
host_notifications_enabled       1;    
host_notification_options        d,u,r,f,s; all   
host_notification_commands       notify-host-by-email; send email
register                         0; because this is a template
}
</pre>
<p>Note that we can also define these options on a “per contact” basis; the only difference is that these directives would be specified in the contacts.cfg definition for that contact rather than in the templates.cfg contact template definition.</p>
<h2>Host Templates</h2>
<p>Host templates enable administrators to define some shared notification options for different host templates. Consider the default Windows Server template. By now, most of the directives should be fairly self-evident because they are so similar to the contact template directives:</p>
<pre>
define host {
name                   windows-server; alias
use                    generic-host; base template definition
check_period           24 x 7;
check_interval         5;
retry_interval         1;
max_check_attempts     10;
check_command          heck-host-alive; typically use this notification_period
notification_interval  30;
notification_options   d,3;
contact_groups         admins;
hostgroups             windows-servers;
icon_image             win40.png
register               0; because it’s a template
}
</pre>
<p>Imagine we wanted to create a Windows DB server template that had all of the attributes of the Windows Server template, with two exceptions: you want notifications to be pushed to only those in the dbadmins group, and you want to change the notification options to include all states. You would add the following definition:</p>
<pre>
define host {
name                   db-windows-server; new name
use                    windows-server; base template
notification_options   d,r,u,f,s; new options
contact_groups         dbadmins; new group to notify
}
</pre>
<h2>Service Templates</h2>
<p>Service templates allow you to configure how services will be handled with regard to notifications. We will not be covering these directives in the interest of your time, but <span style="text-decoration: underline"><a href="http://homepage.mac.com/duling/halfdozen/Nagios-Howto-p1.html">they are explained</a></span> in several other guides online.</p>
<h2>End Result</h2>
<p>Once you have configured your contacts, contact groups, and notification templates to your liking, restart the Nagwin_Nagios service in services.msc. Upon restart, your configuration will kick in. You can verify any contacts you’ve created in the Configuration -&gt; Contacts section of the Nagios web administration interface.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/Notifications-and-Custom-Commands-in-Nagwin-Nrpe.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/Notifications-and-Custom-Commands-in-Nagwin-Nrpe.png','',event,300,75)"><img style="background-image: none; border-right-width: 0px; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px; padding-top: 0px" title="Notifications and Custom Commands in Nagwin-Nrpe" border="0" alt="Notifications and Custom Commands in Nagwin-Nrpe" src="http://4sysops.com/wp-content/uploads/2011/12/Notifications-and-Custom-Commands-in-Nagwin-Nrpe_thumb.png" width="604" height="116" /></a></p>
Author: Justin Shin
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-5-network-monitoring/" title="SCOM 2012 review &#8211; Part 5: Network Monitoring (December 19, 2011)">SCOM 2012 review &#8211; Part 5: Network Monitoring</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</title>
		<link>http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/</link>
		<comments>http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/#comments</comments>
		<pubDate>Thu, 22 Dec 2011 00:45:40 +0000</pubDate>
		<dc:creator>Paul Schnackenburg</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[system center]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7656</guid>
		<description><![CDATA[In this sixth part of the <a href="http://4sysops.com/archives/scom-2012-review-part-1-installation/">SCOM 2012 review</a> series we’ll deep dive into Application Performance Monitoring (APM), formerly known as AVIcode before Microsoft acquired the technology, how it works as well as differences between the stand-alone product and the integrated version in SCOM 2012.]]></description>
			<content:encoded><![CDATA[<p><strong><i>In this sixth part of the <a href="http://4sysops.com/archives/scom-2012-review-part-1-installation/">SCOM 2012 review</a> series we’ll deep dive into Application Performance Monitoring (APM), formerly known as AVIcode before Microsoft acquired the technology, how it works as well as differences between the stand-alone product and the integrated version in SCOM 2012.</i></strong></p>
<p>Troubleshooting application performance issues is a very difficult area, often requiring intimate knowledge of the workings of a particular program. Is the problem in the code, the server hardware, the server software or in the network? Developers need deep insight and detailed logs to debug whereas IT Professionals need standard metrics across all applications and a way to easily pinpoint in which tier the problem might lie.</p>
<p>Microsoft acquired AVIcode in late 2010; this product is designed to look for performance problems in application code without requiring instrumentation to have been built in by the developers. The standalone AVIcode product version 5.7 will be the last as it’s now integrated into SCOM as Application Performance Monitoring (APM).</p>
<p>If you’re a current user of AVIcode 5.7 be aware that its management packs won’t work in SCOM 2012 (templates still work though) ; also APM will only work with .NET / web applications, not stand alone executables and it will only monitor IIS 7 / 7.5 not IIS 6. On the upside the infrastructure is totally integrated in SCOM, there’s no separate database and if it’s monitoring a Server 2008/2008 R2 machine with the IIS management pack the agent will automatically be deployed, although it’s not activated. Another improvement is that you can set an overall SLA for all web applications rather than having to configure monitoring for each individual application, the SLA can then be tweaked for particular programs as needed.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-NET-Monitoring-Configuration.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-NET-Monitoring-Configuration.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="SCOM 2012 - NET Monitoring Configuration" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-NET-Monitoring-Configuration_thumb.png" alt="SCOM 2012 - NET Monitoring Configuration" width="604" height="479" border="0" /></a></p>
<p align="center"><em>For corporations with many IIS web applications the power of APM might just be the feature that justifies the upgrade to SCOM 2012.</em></p>
<p>When the interceptors are activated and loaded into IIS the server will require a restart, after that, even if you add additional applications to be monitored; only the particular app pool needs to be recycled.</p>
<p>The beauty of the integration becomes apparent when you see network, hardware and OS monitoring right next to the application performance information, making it much easier to zero in on exactly where the problem lies. The actual monitoring is done in the Diagnostics and Advisor consoles. Similar events are grouped and it also lists Session events or “what else did the user do when this problem happened”. Performance counters are also displayed; 15 minutes of OS and hardware data leading up to the event to let you easily determine if the problem is the underlying platform or in the application code. All of this data enables the IT Pro to communicate facts when liaising with developers and DBAs.</p>
<p>The separate <strong>Application Diagnostics</strong> and the <strong>Application Advisor</strong> web consoles is probably where developers are going to spend their time troubleshooting, without having to deal with a full SCOM console.</p>
<p>APM can monitor both the server side of an application and the client side (IE only at this stage but support for other browsers is coming) which gives visibility into performance and reliability. The synthetic transaction feature already in SCOM on the other hand gives insight into availability and together the two provided excellent data on overall application performance. APM monitoring carries minimal overhead, as a rule of thumb is uses about 100 MB of memory and increases the CPU load by 5%.</p>
<p>Today there’s no explicit support for APM monitoring of SharePoint 2010 although that is coming and there’s no way to put Advisor reports into a dashboard as there’s no widget for it yet. What’s more concerning is that there won’t be built in support to use APM to monitor cloud applications in Azure at RTM, although this support is “on the roadmap”.</p>
<p>In the next part of this series we’ll examine what’s been improved in the native Unix/Linux monitoring that debuted in SCOM 2007 R2 as well as the brand new Java Application Server monitoring<em>.</em></p>
Author: Paul Schnackenburg
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-5-network-monitoring/" title="SCOM 2012 review &#8211; Part 5: Network Monitoring (December 19, 2011)">SCOM 2012 review &#8211; Part 5: Network Monitoring</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<series:name><![CDATA[SCOM 2012]]></series:name>
	</item>
		<item>
		<title>SCOM 2012 review &#8211; Part 5: Network Monitoring</title>
		<link>http://4sysops.com/archives/scom-2012-review-part-5-network-monitoring/</link>
		<comments>http://4sysops.com/archives/scom-2012-review-part-5-network-monitoring/#comments</comments>
		<pubDate>Mon, 19 Dec 2011 19:05:31 +0000</pubDate>
		<dc:creator>Paul Schnackenburg</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[system center]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7651</guid>
		<description><![CDATA[In this fifth part of the SCOM 2012 RC review series we’ll examine the new Network Monitoring capabilities and the benefits this will bring to IT operations.]]></description>
			<content:encoded><![CDATA[<p><strong><i>In this fifth part of the SCOM 2012 RC review series we’ll examine the new Network Monitoring capabilities and the benefits this will bring to IT operations.</i></strong></p>
<p>Because big organisations often separate the network administration from server operations it can sometimes be difficult to efficiently narrow down if a particular problem is due to the network, the OS, the application or hardware. The new native Network monitoring feature is designed to increase visibility and help IT admins solve problems quicker, it’s not designed to replace specialist network monitoring tools that are probably already part of the network administrator’s toolkit.</p>
<p>Whilst SCOM 2007 R2 offers basic network device monitoring it doesn’t extend to the port level (unless you manually do the work for each individual device based on its Object Identifier (OID)). SCOM 2012 offers support for SNMP 1.0, 2.0 and 3 (but not Netflow) and works with both IPv4 and IPv6. Initial device discovery requires IPv4 addresses on devices so if you have a pure IPv6 network with no IPv4 address allocation this will be an issue. Devices in this context can be switches, routers, load balancers and firewall as well as any other network connectivity gadget that responds to SNMP monitoring.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Network-Monitoring-Discovery.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Network-Monitoring-Discovery.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="SCOM 2012 - Network Monitoring Discovery" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Network-Monitoring-Discovery_thumb.png" alt="SCOM 2012 - Network Monitoring Discovery" width="604" height="473" border="0" /></a></p>
<p align="center"><em>Make sure your discovery rule(s) is properly scoped to find all the devices you want as you can only have one rule per server.</em></p>
<p>Discovery of devices can either be <strong>explicit</strong> where you define (by IP address or ranges) the devices; or <strong>recursive</strong> in which case SCOM 2012 will glean information from one device to attempt to find other devices. During discovery all SNMP community strings you’ve entered for a Run As account are tried until a correct one is found, be aware that some devices will generate an SNMP trap if too many invalid credentials are tried. The SNMP stack is now native to SCOM 2012 in contrast to SCOM 2007 R2 which used the SNMP stack of the OS. To monitor across firewalls you need to allow SNMP (UDP) and ICMP bi-directionally and port 161 and 162 have to be open (including on the Windows Firewall on management servers). SCOM provides the required firewall rules for Windows Firewall but doesn’t enable them by default.</p>
<p>Beyond the basic monitoring there’s extended monitoring where processor and memory utilization and memory fragmentation along with other device specific objects are tracked if the device is supported by SCOM 2012. To date there are more than 80 vendors on the list and over 800 devices, see the Excel spread sheet <a href="http://www.microsoft.com/download/en/confirmation.aspx?id=26831">here</a>. When a device supports SNMTP traps for system changes (card added, changes to chassis configuration) SCOM 2012 will listen for them. The supported information for each interface depends on how the device manufacturer has implemented monitoring; Management Information Base (MIB) based on RFC 2863 and MIB-II RFC 1213 provides deeper information.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Network-Monitoring.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Network-Monitoring.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="SCOM 2012 - Network Monitoring" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Network-Monitoring_thumb.png" alt="SCOM 2012 - Network Monitoring" width="604" height="456" border="0" /></a></p>
<p align="center"><em>Deep information about each monitored device is only a mouse click away.</em></p>
<p>In strictly controlled environments where even read only SNMP monitoring is restricted you can opt for ICMP only which will let you know whether a device is responsive or not. If a node is down, all other monitoring is suppressed so that you’re not flooded with alerts about ports and links being down.</p>
<p>But the coolest part of Network Monitoring has to be the port stitching feature that shows which agent monitored node is connected to each port. SCOM will also discover all VLANs and what switches participate in each VLAN, note that only connected ports will be monitored unless you manually add ports to the Critical Network Adapters Group in which case it will always be monitored. For routers it will identify which Cisco Hot Standby Router Protocol (HSRP) groups they participate in. The end result is clear network diagrams that show exactly what systems are connected to witch switch port as well as visually indicating where a problem might lie.</p>
<p>SCOM 2012 has over 200 new items of knowledge for network monitoring and will report on packet errors per switch port for instance. At RC the recommended scalability numbers are about 500 devices per Management Server and about 2000 devices per Management Group; however there’s a comprehensive sizing guide forthcoming. Be aware that you can only have one discovery rule per Management Server so make sure it encompasses all the devices you need to find.</p>
<p>There are four dashboards built in for network monitoring with the <strong>Network Vicinity Dashboard </strong>providing a visual representation of connected devices within one hop to the selected node, you can increase the number of hops up to five. Be aware that this dashboard won’t identify teamed NICs as such, nor will it show Unix / Linux computers and VMs will be associated with the same network device as the host; the Hyper-V switch does show up as an SNMP device.</p>
<p>The <strong>Network Summary Dashboard</strong> lets you easily spot the device with the slowest response, highest CPU or interfaces with the highest utilization, most send/receive errors or nodes with the most alerts. From this dashboard you can then pivot into the <strong>Network Node Dashboard</strong> that lets you view availability statistics for the last 24 or 48 hours, last seven days or last month; this dashboard also shows other utilization statistics for the node. The <strong>Network Interface Dashboard</strong> drills down to an individual port and lets you see packet statistics for the last 24 hours as well as alerts and interface properties.</p>
<p>There are also five new network monitoring reports and some new tasks in the console such as opening a Telnet session to a device, doing a quick SNMP “get” or performing an SNMP walk of a device. Note that if you’ve authored management packs for network monitoring in SCOM 2007 R2 these will need updating to work with the new functionality, see <a href="http://blogs.technet.com/b/momteam/archive/2011/10/24/migrating-operations-manager-2007-network-monitoring.aspx">here</a> for more information.</p>
<p>In the next part of this eight part SCOM 2012 RC overview we’ll look at another crucial piece of the IT puzzle that needs <a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/">monitoring – applications</a>.</p>
Author: Paul Schnackenburg
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/scom-2012-review-part-5-network-monitoring/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<series:name><![CDATA[SCOM 2012]]></series:name>
	</item>
		<item>
		<title>SCOM 2012 review &#8211; Part 4: Infrastructure improvements</title>
		<link>http://4sysops.com/archives/scom-2012-review-part-4-infrastructure-improvements/</link>
		<comments>http://4sysops.com/archives/scom-2012-review-part-4-infrastructure-improvements/#comments</comments>
		<pubDate>Wed, 14 Dec 2011 19:28:44 +0000</pubDate>
		<dc:creator>Paul Schnackenburg</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[system center]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7625</guid>
		<description><![CDATA[In the fourth part of this <a href="http://4sysops.com/archives/scom-2012-review-part-1-installation/">SCOM 2012  review</a> series we’ll look at the removal of the Root Management Server (RMS), it’s replacement, how to build a Highly Available SCOM infrastructure easily and acquaint ourselves with the new Resource Pool concept.]]></description>
			<content:encoded><![CDATA[<p><strong><i>In the fourth part of this <a href="http://4sysops.com/archives/scom-2012-review-part-1-installation/">SCOM 2012  review</a> series we’ll look at the removal of the Root Management Server (RMS), it’s replacement, how to build a Highly Available SCOM infrastructure easily and acquaint ourselves with the new Resource Pool concept.</i></strong></p>
<h2>Root Management Server (RMS) in SCOM 2007</h2>
<p>Because of the unique role that the RMS plays in SCOM 2007 R2 it’s a single point of failure. It’s the connection point for consoles / web consoles, it runs the configuration service, it handles connectors and health aggregation as well as role based access control. The way to build High Availability (HA) in SCOM 2007 R2 is to cluster the RMS server which is operationally and technically complex and also relies on an active / passive model with the associated hardware and licensing costs. There’s also the option to manual promote a secondary management server to RMS in a disaster situation but this isn’t straightforward.</p>
<h2>SCOM 2012 high availability</h2>
<p>SCOM 2012 changes the game by doing what Exchange and other Microsoft applications have already done by providing HA out of the box. Management servers are pooled and automatically share the load, no server is more important than any other and simply by having several of them availability is ensured. Each server runs the configuration service and they store their data in the database instead of in an XML configuration file / memory like SCOM 2007 R2 did (this file could be up to several GB in large environments), leading to quicker start-up of each management server.</p>
<p>Failover is not instantaneous and it can take up to two minutes whilst the pool reloads managed instances. All management servers should be located in the same datacentre (less than 5ms latency) and you should deploy Gateway servers in other locations. These servers connect SCOM to branch offices or untrusted domains and can also be in resource pools but you can’t mix Management and Gateway servers in the same pool.</p>
<p>In SCOM 2007 R2 the RMS has special characteristics and some current management packs (Exchange 2007 and 2010 are examples, a full list is forthcoming from Microsoft) rely on a RMS to report to. Since there isn’t an RMS server in SCOM 2012 one management server is assigned the RMS Emulator role to provide compatibility with these MPs. This role can be manually moved between management servers (using the PowerShell cmdlet Set-SCOMRMSEmulator) and there’s a management pack coming that will automate the failover of the role. Management Groups don’t rely on the RMS emulator; it’s there for backwards compatibility with MPs.</p>
<h2>SCOM 2012 Resource Pool</h2>
<p>Know that all management servers are treated as having equal capacity; differences in processors and memory capacity are not taken into account so it’s best to plan on having all servers identical. Different workloads are also not taken into account and are simply distributed amongst the available servers in a pool. There’s are three default pools ; <strong>All Management Server Resource Pool</strong>, the <strong>Notification Pool</strong> and an <strong>AD Integration pool</strong> but you can create your own pools for specific monitoring situations.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Resource-Pools.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Resource-Pools.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="SCOM 2012 - Resource Pools" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Resource-Pools_thumb.png" alt="SCOM 2012 - Resource Pools" width="604" height="406" border="0" /></a></p>
<p align="center"><em>The three built in Resource Pools</em></p>
<p>Roles within a pool can be manually controlled, this is suitable for instance if you have a hardware text/SMS alerting device connected to a particular management server, there’s no point in failing that function over to a server without the hardware attached. Cross platform (Unix/Linux) monitoring and network device monitoring is also targeted at pools rather than individual management servers.</p>
<h2>SCOM 2012 maintenance mode</h2>
<p>An issue in SCOM 2007 R2 is when you put a management server into maintenance mode, because the workflow to take the server out of maintenance mode after the designated time is also running on that server it never automatically comes out of maintenance mode, in SCOM 2012 the workflow is moved to the All Management Servers resource pool negating the need to manually take a server out of maintenance mode.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Web-Console.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Web-Console.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="SCOM 2012 - Web Console" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Web-Console_thumb.png" alt="SCOM 2012 - Web Console" width="602" height="406" border="0" /></a></p>
<p align="center"><em>The new Silverlight based web console is your friend when you’re away from your monitoring station.</em></p>
<p>The new home on the web for all management packs is <a href="http://systemcenter.pinpoint.microsoft.com">http://systemcenter.pinpoint.microsoft.com</a> and for those who’ve been less than impressed by the Pinpoint site and finding management packs in the past it’s good to know that the above address is focused solely on System Center.</p>
<p>In the next part of this SCOM 2012 RC technical review series we’ll look at my favourite new feature: <a href="http://4sysops.com/archives/scom-2012-review-part-5-network-monitoring/">Network Monitoring</a>, what’s required and how it works.</p>
Author: Paul Schnackenburg
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/scom-2012-review-part-4-infrastructure-improvements/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<series:name><![CDATA[SCOM 2012]]></series:name>
	</item>
		<item>
		<title>SCOM 2012 review &#8211; Part 3: Interoperability</title>
		<link>http://4sysops.com/archives/scom-2012-review-part-3-interoperability/</link>
		<comments>http://4sysops.com/archives/scom-2012-review-part-3-interoperability/#comments</comments>
		<pubDate>Mon, 12 Dec 2011 19:05:38 +0000</pubDate>
		<dc:creator>Paul Schnackenburg</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[system center]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7618</guid>
		<description><![CDATA[In this third part of the SCOM 2012 RC technical review we’ll look at Interoperability with other management systems and other System Center products, PowerShell v2 and v3 support in SCOM 2012 and Console enhancements.]]></description>
			<content:encoded><![CDATA[<p><strong><i>In this third part of the SCOM 2012 RC technical review we’ll look at Interoperability with other management systems and other System Center products, PowerShell v2 and v3 support in SCOM 2012 and Console enhancements.</i></strong></p>
<h3>Interoperability in SCOM 2012</h3>
<p>Because a modern enterprise is heterogeneous SCOM sometimes needs to integrate with other monitoring solutions such as IBM Tivoli, HP OpenView and others. In SCOM 2007 R2 this is accomplished with connectors, but these are not supported in SCOM 2012. The integration between SCOM and other management systems will now be accomplished through System Center Orchestrator 2012.</p>
<p>The different programs in the System Center suite are essentially different applications with little integration in the current version. System Center Orchestrator 2012 is about to change this in the 2012 wave by providing Integration Packs (IP) for each of the major Systems Center applications including SCOM. The SCOM IP can create and interact with Alerts and Monitors as well as start and stop maintenance mode.</p>
<p>There’s also IPs for System Center Service Manager (SCSM) that can create incidents automatically based on alerts in SCOM for instance; the IP for System Center Virtual Machine Manager (SCVMM) will push information about VMs, services, private clouds and hosts into SCOM. In a future review here at 4sysops we’ll look at this approach for integrating the System Center suite and if it’ll provide the tight glue that many have asked for. <strong></strong></p>
<h2>PowerShell in SCOM 2012</h2>
<p>The good news is that SCOM now comes with full PowerShell 2.0 support and a host of new cmdlets. The less good news is that there will be a learning curve as the new cmdlet nouns have “SCOM” in their names; the old cmdlets still seem to work however. There are also new cmdlets for monitoring Unix and Linux machines (see part seven), these rely on PowerShell 3.0 (in CTP at the time of writing) for easy scripting and background operations.</p>
<p>To execute PowerShell cmdlets you have to establish a connection to a management group, this can either be persistent so you can run multiple cmdlets or a temporary connection allowing you to run a single command.</p>
<p>A new cmdlet that might come in very handy is Export-SCOMEffectiveMonitoringConfiguration that looks at a specific monitored instance (or a list), finds the monitors, rules and overrides that apply to it and exports the effective monitoring to a csv file.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM2012-Main-Console.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM2012-Main-Console.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="SCOM2012 - Main Console" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM2012-Main-Console_thumb.png" alt="SCOM2012 - Main Console" width="604" height="501" border="0" /></a></p>
<p align="center"><em>The main console in SCOM 2012 follows the familiar System Center look and is easy to work with.</em></p>
<h2>Consoles in SCOM 2012</h2>
<p>Sysadmins familiar with SCOM 2007 R2 will feel right at home in the console, apart from some cosmetic changes (the “Actions” pane is now the “Tasks” pane and is split into two tabs, one for actions and one for help) it’s almost identical. The Web console on the other hand has received a major Silverlight overhaul and is now a joy to work with. Note that the Web console provides a monitoring workspace only although you can create dashboards in it with the same functionality as in the full console (see part eight) .You’ll need a 32 bit version of Word 2010 to edit custom information in the Knowledge Base, Office 2010 x64 won’t work.</p>
<p>In the next part of this series we’ll look at the flagship feature of SCOM 2012; built in <a href="http://4sysops.com/archives/scom-2012-review-part-4-infrastructure-improvements/">High Availability as well as how the new Resource Pools work</a>.</p>
Author: Paul Schnackenburg
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/scom-2012-review-part-3-interoperability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<series:name><![CDATA[SCOM 2012]]></series:name>
	</item>
		<item>
		<title>Operations Manager 2012 review &#8211; Part 2: Upgrade</title>
		<link>http://4sysops.com/archives/operations-manager-2012-review-part-2-upgrade/</link>
		<comments>http://4sysops.com/archives/operations-manager-2012-review-part-2-upgrade/#comments</comments>
		<pubDate>Thu, 08 Dec 2011 20:22:33 +0000</pubDate>
		<dc:creator>Paul Schnackenburg</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[system center]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7592</guid>
		<description><![CDATA[In this second part of our eight part <a href="http://4sysops.com/archives/scom-2012-review-part-1-installation/">rerview of SCOM 2012</a> we’ll look at how to upgrade from Operations Manager 2007 R2, the sequence, multi-homing agents and management packs considerations.]]></description>
			<content:encoded><![CDATA[<p><strong><i>In this second part of our eight part <a href="http://4sysops.com/archives/scom-2012-review-part-1-installation/">rerview of SCOM 2012</a> we’ll look at how to upgrade from Operations Manager 2007 R2, the sequence, multi-homing agents and management packs considerations.</i></strong></p>
<h3>Upgrading to Operations Manager 2012</h3>
<p>Only SCOM 2007 R2 can be upgraded to Operations Manager 2012 so if you’re on an earlier version you have to upgrade to this level first. If you’re an early adopter and trialled the beta it can be upgraded to the current Release Candidate and it in turn is supported for upgrade to RTM. You can’t however upgrade from the beta directly to RTM, nor can you upgrade to RC from a SCOM 2012 beta that was originally upgraded from SCOM 2007 R2.</p>
<p>The most important prerequisite however is that all SCOM 2007 R2 management servers that you want to upgrade are 64 bit on x64 hardware and run 2008 R2 SP1 as the OS. If this isn’t the case in your environment, fear not, you can spin up a new server and start the upgrade from there. If you’re doing your upgrade this way back up your encryption keys from the current RMS and restore them on the new SCOM 2012 server.</p>
<p>The general sequence for an upgrade is: secondary management servers, gateways and agents first, then the Root Management Server (RMS). If any management servers or gateways are still 2007 R2 the final RMS upgrade will be blocked. If agents are still 2007 R2 this will be highlighted during the RMS upgrade but it won’t block the upgrade. Be aware that these agents won’t be able to report to SCOM until they have been upgraded to SCOM 2012 agents.</p>
<p>If yours is a smaller environment with a single SCOM 2007 R2 server you can either upgrade in place (provided your server meets the hard- and software requirements) or you can set up another management server and start the upgrade from there. If you upgrade in-place be aware that you have to upgrade all the agents before they’ll report to SCOM 2012.</p>
<p>To assist with your upgrade plan there are clickable <a href="http://technet.microsoft.com/en-us/library/hh454967.aspx">flow diagram</a>s on TechNet that clarifies what options you have, the same page also provides links to checklists with step by step instructions. There’s also an upgrade helper Management Pack (MP) that walks you through the upgrade and gives you an overview of what parts of your infrastructure has been upgraded.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Report-View.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Report-View.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none;" title="SCOM 2012 - Report View" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Report-View_thumb.png" alt="SCOM 2012 - Report View" width="383" height="492" /></a></p>
<p align="center"><em>Once your environment has been upgraded to Operations Manager 2012 you can take advantage of the new reporting functionality.</em></p>
<p>Further points for your upgrade planning includes backing up the databases, disabling notifications to prevent false alarms and stopping connectors to avoid false tickets being generated as well as making sure agents don’t report directly to the RMS as your upgrading it. Most importantly, check the event log for any problems, you can’t upgrade away from problems so ensure your SCOM environment is healthy before you upgrade.</p>
<p>If you used Operations Manager to deploy agents they will show up as pending upgrade in the console and you can push out the upgrade from SCOM; if you use an alternate method of deploying agents (such as SCCM) you have to upgrade them using your chosen deployment method but it’s simple MSI file so that should be easy. The native consoles are version specific so if you need both the old and the new console on a machine upgrade to the SCOM 2012 console and then reinstall the SCOM 2007 R2 console afterwards.</p>
<p>Depending on the size of your environment you may have a mix of SCOM 2007 R2 and SCOM 2012 management groups and servers in your environment for some time so be aware that the SCOM 2012 agent will communicate with SCOM 2007 R2 servers. The reverse isn’t true however so an important step in your upgrade process will be upgrading agents to the 2012 version. The new Control Panel applet makes it easy to identify which management groups an agent reports to and adding and removing of management groups from agents can now be centrally controlled via scripts.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Agent-Control-Panel-Applet.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Agent-Control-Panel-Applet.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none;" title="SCOM 2012 - Agent Control Panel Applet" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Agent-Control-Panel-Applet_thumb.png" alt="SCOM 2012 - Agent Control Panel Applet" width="500" height="415" /></a></p>
<p align="center"><em>The new scriptable control over agent assignments will be a boon in large environments as will the Control Panel applet for troubleshooting.</em></p>
<p>Management packs that work in SCOM 2007 R2 should work in Operations Manager 2012 because the MP schema is unchanged. The few exceptions are where third party management packs require new modules on the agent, new MP templates or new view types due to API changes; or if they attempt to create or update other MPs or elements within other MPs.</p>
<p>In the next part of this series we’ll look at <a href="http://4sysops.com/archives/scom-2012-review-part-3-interoperability/">PowerShell enhancements in SCOM 2012</a>, interoperability with other platforms as well as improvements in the Console.</p>
Author: Paul Schnackenburg
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/operations-manager-2012-review-part-2-upgrade/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<series:name><![CDATA[SCOM 2012]]></series:name>
	</item>
		<item>
		<title>SCOM 2012 review &#8211; Part 1: Installation</title>
		<link>http://4sysops.com/archives/scom-2012-review-part-1-installation/</link>
		<comments>http://4sysops.com/archives/scom-2012-review-part-1-installation/#comments</comments>
		<pubDate>Mon, 05 Dec 2011 20:06:34 +0000</pubDate>
		<dc:creator>Paul Schnackenburg</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[system center]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7567</guid>
		<description><![CDATA[In this first part of the SCOM 2012 (Systems Center Operations Manager) overview we’ll cover hardware and software prerequisites, database requirements and enhancements to the installation.]]></description>
			<content:encoded><![CDATA[<p><strong><i>In this first part of the SCOM 2012 (Systems Center Operations Manager) overview we’ll cover hardware and software prerequisites, database requirements and enhancements to the installation.</i></strong></p>
<p>Long gone are the days when monitoring your IT environment meant waiting for the phone to ring and your users tell IT that something wasn’t working. Keeping an eye on your infrastructure is important for businesses of all sizes and Systems Center Operations Manager (SCOM) has been very good at providing that visibility for Microsoft’s platforms for many years, the current version (2007 R2) added native cross platform support for Linux and Unix.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Main-Console.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Main-Console.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="SCOM 2012 - Main Console" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Main-Console_thumb.png" alt="SCOM 2012 - Main Console" width="604" height="442" border="0" /></a></p>
<p align="center"><em>SCOM 2012 &#8211; Main Console</em></p>
<p>The new kid on the block is SCOM 2012, currently in Release Candidate and it adds some really cool features for network monitoring, High Availability (HA), application monitoring and dashboards. In this eight part article we’ll dive into these and other improvements; giving both sysops with SCOM experience and other IT admins insight into what SCOM 2012 can bring to your environment.</p>
<p><strong>Article Parts:</strong></p>
<ol>
<li>SCOM 2012 Installation</li>
<li>Upgrading to SCOM 2012</li>
<li>Interoperability, PowerShell and Consoles in SCOM 2012</li>
<li>Infrastructure improvements in SCOM 2012</li>
<li>Network Monitoring in SCOM 2012</li>
<li>Application Performance Monitoring in SCOM 2012</li>
<li>Unix and Linux monitoring and Java Enterprise Edition monitoring in SCOM 2012</li>
<li>Dashboards in SCOM 2012 and Conclusion</li>
</ol>
<h2>SCOM 2012 Installation</h2>
<p>The overall installation experience for SCOM has been improved; the most obvious change is that the operational and data warehouse databases are created during the installation, in earlier versions they had to be created prior to the SCOM installation. The pre-requisite checker is also built into the installation wizard; this simplifies the overall installation process. Any problems during the steps in the installation wizard are highlighted and the error message is copied to the clipboard. Credentials that you define are tested from within the wizard to make sure they work before proceeding to the next screen.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Installation-Wizard.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Installation-Wizard.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none;" title="SCOM 2012 - Installation Wizard" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Installation-Wizard_thumb.png" alt="SCOM 2012 - Installation Wizard" width="600" height="448" /></a></p>
<p align="center"><em>SCOM 2012 &#8211; The Installation Wizard has been improved, providing for a smoother setup experience. </em></p>
<p>The installation program will assign the Administrators group on the local computer to the Operations Manager Administrators role which is a change from SCOM 2007. During installation you specify the <strong>management server action account</strong> and the <strong>Configuration service and Data Access service</strong>, and although it’s not recommended from a security standpoint you can use the same account for both roles. The former should be a domain-based account and not a domain admin account. The latter account is used to read and update information in the operational database and can either be assigned to Local System or a domain account, where the management server and the databases are on separate servers it has to be a domain based account.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Installation-Define-Accounts.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Installation-Define-Accounts.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none;" title="SCOM 2012 - Installation - Define Accounts" src="http://4sysops.com/wp-content/uploads/2011/12/SCOM-2012-Installation-Define-Accounts_thumb.png" alt="SCOM 2012 - Installation - Define Accounts" width="600" height="451" /></a></p>
<p align="center"><em>Make sure you plan your accounts for SCOM 2012 correctly.</em></p>
<p>All SCOM 2012 servers (Management Servers and Gateway Servers) are supported to run as Virtual Machines with the recommendation to run the SQL server database on physical servers or virtual servers with direct attached disks for performance reasons. VM snapshots are not supported for use in conjunction with SCOM 2012. Management and gateway servers have to run on Windows Server 2008 R2 SP1, recommended memory is 2GB or more with a 2.8 GHz CPU. Prerequisite software is PowerShell 2.0, Windows Remote Management (WinRM), Core XML Services and .NET Framework 3.5 SP1 as well as .NET Framework 4.</p>
<p>The SQL Server backend has to run either 2008 SP1 x64 or later or 2008 R2; on a server with at least 4 GB of memory, with database collation set to SQL-Latin1_General_CP1_CI_AS and full text search enabled. If you need to provide high availability for the SQL Server databases both the Operational database, the Reporting data warehouse and the Audit collection database are recommended and supported on separate Active-Passive clusters as long as no other SCOM 2012 services run on these servers. Other supported configurations (but not recommended due to potential SQL performance issues) include Active-Active clusters and putting the Operational, Data Warehouse and Audit Collection databases on the same cluster, see <a href="http://technet.microsoft.com/en-us/library/hh205990.aspx#BKMK_ClusterConfig">here</a> for more details.</p>
<p>The Data Warehouse database is now a required component in your SCOM environment, it was optional in SCOM 2007 R2, but it can be shared between Management Groups. The Operational database retains data for seven days by default, the Data Warehouse for 400 days by default.</p>
<p>The Windows agent comes in both a 32 and 64 bit version, as well as a 64 bit Itanium version, the 32 bit version can’t be installed on an x64 OS. The RC limits on objects and monitored items are 3000 agent monitored computers reporting to a management server and 2000 agent monitored computers to a gateway server but expect these figures to change for RTM.</p>
<p>In the next part of this SCOM 2012 RC overview we’ll look at how you can <a href="http://4sysops.com/archives/operations-manager-2012-review-part-2-upgrade/">upgrade from your current SCOM</a> environment and in which order this has to be done as well as the help available for your upgrade planning.</p>
Author: Paul Schnackenburg
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/scom-2012-review-part-1-installation/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<series:name><![CDATA[SCOM 2012]]></series:name>
	</item>
		<item>
		<title>FREE: SolarWinds Real-Time Bandwidth Monitor</title>
		<link>http://4sysops.com/archives/free-solarwinds-real-time-bandwidth-monitor/</link>
		<comments>http://4sysops.com/archives/free-solarwinds-real-time-bandwidth-monitor/#comments</comments>
		<pubDate>Thu, 01 Dec 2011 19:05:13 +0000</pubDate>
		<dc:creator>Timothy Warner</dc:creator>
				<category><![CDATA[Free Tools]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[networking]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7542</guid>
		<description><![CDATA[In this article you will be introduced to the free Real-Time Bandwidth Monitor utility from SolarWinds. With this tool you can watch network utilization statistics for multiple interfaces in real time]]></description>
			<content:encoded><![CDATA[<p><strong><i>In this article you will be introduced to the free Real-Time Bandwidth Monitor utility from SolarWinds. With this tool you can watch network utilization statistics for multiple interfaces in real time</i></strong></p>
<p>One of the duties of many Windows systems administrator is network management. That is, you may be called to detect, diagnose, troubleshoot and resolve network interface slowdowns.</p>
<p>As your network grows in complexity to include multiple line-of-business (LOB) Web applications, load-balancing configurations, and the like, interface troubleshooting and performance monitoring can easily become extremely cumbersome and complex.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Monitoring-an-interface.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Monitoring-an-interface.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none;" title="SolarWinds Real-Time Bandwidth Monitor - Monitoring an interface" src="http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Monitoring-an-interface_thumb.png" alt="SolarWinds Real-Time Bandwidth Monitor - Monitoring an interface" width="600" height="311" /></a></p>
<p align="center"><em>Monitoring an interface with SolarWinds Real-Time Bandwidth Monitor</em></p>
<p>To assist us in this effort, <a href="http://www.solarwinds.com/?CMP=SYN-TAD-4SYSOPS-RTBM_REVIEW-X-SWHP-SOLARWINDS">SolarWinds</a> gives us the <a href="http://www.solarwinds.com/register/registrationshort.aspx?program=1643&amp;c=70150000000PDzJ&amp;CMP=SYN-TAD-4SYSOPS-RTBM_REVIEW-RTBM-DL-RTBM">Real-Time Bandwidth Monitor</a>. This is a free utility that enables us to monitor network bandwidth utilization statistics for multiple interfaces in real time.</p>
<h2>Setting up interface bandwidth monitoring</h2>
<p>The Real-Time Bandwidth Monitor software can be installed on any modern 32- or 64-bit edition of Windows desktop and server operating systems.</p>
<p>However, it should be noted that because the interface polling and statistics gathering in this product relies upon Simple Network Management Protocol (SNMP), you need SNMP turned on for any device you will be monitoring, which it will be by default for your network devices.</p>
<p>In some cases, you will prefer to have an SNMP server in place in your domain prior to using this tool.</p>
<p>For instance, you can fire up Server Manager in Windows Server 2008 R2 and install the <strong>SNMP Server</strong> feature, as shown in the following figure.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/Windows-Server-2008-R2-Install-SNMP-Server-feature.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/Windows-Server-2008-R2-Install-SNMP-Server-feature.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none;" title="Windows Server 2008 R2 - Install SNMP Server feature" src="http://4sysops.com/wp-content/uploads/2011/12/Windows-Server-2008-R2-Install-SNMP-Server-feature_thumb.png" alt="Windows Server 2008 R2 - Install SNMP Server feature" width="600" height="444" /></a></p>
<p align="center"><em>Windows Server 2008 R2 &#8211; Install SNMP Server feature</em></p>
<p>Once you have SNMP Server installed, you can configure SNMP-related metadata like the community name and trap destinations by modifying the properties of the SNMP Service Windows service. This process is depicted in the following screen capture.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SNMP-Service-Windows-service.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SNMP-Service-Windows-service.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none;" title="SNMP Service Windows service" src="http://4sysops.com/wp-content/uploads/2011/12/SNMP-Service-Windows-service_thumb.png" alt="SNMP Service Windows service" width="600" height="481" /></a></p>
<p align="center"><em>SNMP Service Windows service</em></p>
<p>Upon first launch of the application, you are asked to create a monitor. This task includes three pieces of information:</p>
<ul>
<li>The IP or hostname of a device (desktop PC, server, switch, router, wireless access point, etc.)</li>
<li>The SNMP version in use on your network (1,2, or 3)</li>
<li>The SNMP credentials (community name for SNMPv1 and v2; username, context, and authentication method for SNMPv3)</li>
</ul>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Configuring-the-device.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Configuring-the-device.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none;" title="SolarWinds Real -Time Bandwidth Monitor -Configuring the device" src="http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Configuring-the-device_thumb.png" alt="SolarWinds Real -Time Bandwidth Monitor -Configuring the device" width="600" height="427" /></a></p>
<p align="center"><em>Configuring the device</em></p>
<p>The next step in the setup process is selecting the desired interface. If you are connected to a switch, then you will be able to monitor individual port IDs; if you are connected to a Windows server, you can choose among physical and virtual network interfaces.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Selecting-an-interface-to-monitor.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Selecting-an-interface-to-monitor.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none;" title="SolarWinds Real -Time Bandwidth Monitor - Selecting an interface to monitor" src="http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Selecting-an-interface-to-monitor_thumb.png" alt="SolarWinds Real -Time Bandwidth Monitor - Selecting an interface to monitor" width="600" height="428" /></a></p>
<p align="center"><em>Selecting an interface to monitor</em></p>
<p>We are almost finished. The final step in the configuration process is setting threshold values. The percentages that you specify for warning and critical values enable the Real-Time Bandwidth Monitor to give you feedback regarding degrees of bandwidth utilization.</p>
<p>Note in the following screenshot that you can also limit the chart date to a particular time interval or data points (sampling is performed at the half-second rate). Click <strong>Launch Monitor</strong> to start the monitor. Yes, you can have more than one monitor running on a host computer simultaneously.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Setting-threshold-values.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Setting-threshold-values.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none;" title="SolarWinds Real-Time Bandwidth Monitor -Setting threshold values" src="http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Setting-threshold-values_thumb.png" alt="SolarWinds Real-Time Bandwidth Monitor -Setting threshold values" width="600" height="430" /></a></p>
<p align="center"><em>Setting threshold values</em></p>
<h2>Monitoring an interface</h2>
<p>As you can see in the following screenshot, the monitoring screen is a resizable dialog box that is laid out in a very easy-to-understand manner. Inbound and outbound traffic on the selected interface are color-coded, as is the data line if it exceeds a threshold value.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Monitoring-an-interface.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Monitoring-an-interface.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none;" title="SolarWinds Real-Time Bandwidth Monitor - Monitoring an interface" src="http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Monitoring-an-interface_thumb.png" alt="SolarWinds Real-Time Bandwidth Monitor - Monitoring an interface" width="600" height="311" /></a></p>
<p align="center"><em>Monitoring an interface</em></p>
<p>The line chart is active; you can analyze data points simply by hovering your mouse over them. This is shown in the following screen capture.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Analyzing-a-data-point.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Analyzing-a-data-point.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none;" title="SolarWinds Real-Time Bandwidth Monitor - Analyzing a data point" src="http://4sysops.com/wp-content/uploads/2011/12/SolarWinds-Real-Time-Bandwidth-Monitor-Analyzing-a-data-point_thumb.png" alt="SolarWinds Real-Time Bandwidth Monitor - Analyzing a data point" width="291" height="323" /></a></p>
<p align="center"><em>Analyzing a data point</em></p>
<p>You can make use of another of SolarWinds tools (this one is not free) called <a href="http://www.solarwinds.com/products/toolsets/wankiller.aspx?CMP=SYN-TAD-4SYSOPS-RTBM_REVIEW-T-PPI-WAN_KILLER">WAN Killer</a> to simulate loads through monitored network interfaces.</p>
<p>While we are on the subject of related SolarWinds software, the Real-Time Bandwidth Monitor is a &#8220;smaller sibling&#8221; to their enterprise <a href="http://www.solarwinds.com/products/network-management/network-performance-monitor.aspx?CMP=SYN-TAD-4SYSOPS-RTBM_REVIEW-NPM-PPI-NPM">Orion Network Performance Monitor</a> (NPM) software. NPM is a one-stop solution for automatically discovering and monitoring interfaces in your LAN and WAN environments. You can download a free demo from SolarWinds if you are so interested.</p>
<h2>Conclusion</h2>
<p>In summary, the SolarWinds Real-Time Bandwidth Monitor gives us systems/network administrators the ability to visualize network bandwidth utilizations on our interfaces. This data is extremely important not only for troubleshooting speed and access problems, but also for application performance tuning and enhancing the overall health of our network. Please feel free to leave your questions in the comments portion of this post.</p>
<h2><a href="http://www.solarwinds.com/register/registrationshort.aspx?program=1643&amp;c=70150000000PDzJ&amp;CMP=SYN-TAD-4SYSOPS-RTBM_REVIEW-RTBM-DL-RTBM">Real-Time Bandwidth Monitor</a></h2>
Author: Timothy Warner
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/zenmap-windows-gui-for-nmap/" title="FREE: Zenmap: Windows GUI for nmap (January 3, 2012)">FREE: Zenmap: Windows GUI for nmap</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/free-solarwinds-real-time-bandwidth-monitor/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Spiceworks installation guide</title>
		<link>http://4sysops.com/archives/spiceworks-installation-guide/</link>
		<comments>http://4sysops.com/archives/spiceworks-installation-guide/#comments</comments>
		<pubDate>Thu, 17 Nov 2011 10:57:42 +0000</pubDate>
		<dc:creator>Vincent Boudreau</dc:creator>
				<category><![CDATA[Tips]]></category>
		<category><![CDATA[desktop management tools]]></category>
		<category><![CDATA[monitoring]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7446</guid>
		<description><![CDATA[This article discusses installation requirements of the free network monitoring software Spiceworks and contains a concise walkthrough of the Spiceworks installation process.]]></description>
			<content:encoded><![CDATA[<p><strong><i>This article discusses installation requirements of the free network monitoring software Spiceworks and contains a concise walkthrough of the Spiceworks installation process.</i></strong></p>
<p>Spiceworks is a great free network inventory and monitoring tool that is very useful for administrators and help desk staff. Spiceworks supports hardware and software inventory, facilitates network monitoring, and offers help desk functionality. For a more detailed feature list, please read this <a href="http://4sysops.com/archives/spiceworks/">overview of Spiceworks&#8217;s functionality</a>. In this article, I will help you get started quickly with Spiceworks.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/11/Spiceworks.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/11/Spiceworks.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border-width: 0px;" title="Spiceworks" src="http://4sysops.com/wp-content/uploads/2011/11/Spiceworks_thumb.png" alt="Spiceworks" width="604" height="308" border="0" /></a></p>
<p><em>Spiceworks</em></p>
<h2>Requirements</h2>
<p>First, make sure you have a user that has full administrator rights to all resources in your network. You have to provide that user for the Spiceworks scanning utility. Since the tool can also scan VMware virtual machines, you might need the corresponding login information.</p>
<p>Second, make sure you have exception rules in your firewalls to allow the following: Ping, Windows Management Instrumentation (WMI), and RDP. I suggest doing this using Group Policies so you’ll be sure everything is configured properly on all PCs.</p>
<p>Third and finally, you need to make sure that the WMI service is enabled and running on all computers. This is likely the most important part, as Spiceworks uses this service to get all of its information.</p>
<h2>Spiceworks installation</h2>
<p>After you download the latest version, execute the installer on either a server or a powerful PC. The reason for this is that Spiceworks does require quite some processing power depending on the size of your network.</p>
<p>1. Specify the port on which you’d like it to run (port 80 is the default setting).</p>
<p>2. Accept the terms and choose the installation path.</p>
<p>3. Start up the application (via the shortcut).</p>
<p>4. If your firewall asks, allow Spiceworks to access your network; the corresponding executables are spiceworks-httpd.exe and spiceworks-finder.exe.</p>
<p>5. If you already have a Spiceworks account, you still need to create a new user unless you want to copy the database information of an existing installation.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-login-information.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-login-information.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="Spiceworks installation - Spiceworks login information" src="http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-login-information_thumb.png" alt="Spiceworks installation - Spiceworks login information" width="502" height="276" border="0" /></a></p>
<p><em>Spiceworks login information</em></p>
<p>6. Click &#8220;Inventory&#8221; to start scanning your network.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-start-screen.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-start-screen.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="Spiceworks installation - Spiceworks start screen" src="http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-start-screen_thumb.png" alt="Spiceworks installation - Spiceworks start screen" width="303" height="276" border="0" /></a></p>
<p><em>Spiceworks start screen</em></p>
<p>7. Enter the range of your network.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Network-range.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Network-range.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="Spiceworks installation - Network range" src="http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Network-range_thumb.png" alt="Spiceworks installation - Network range" width="504" height="173" border="0" /></a></p>
<p><em>Network range</em></p>
<p>8. Provide the credentials for the different account types. Here is where you need to supply the administrator credentials for Windows, Unix, and switches/printers (via SNMP). &#8220;Unix&#8221; is the one you want to use to detect VMware virtual machines. If you use different passwords for your network devices, just provide the one that is the most used. You can go into the configuration later to provide logins for specific devices.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-scan-settings.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-scan-settings.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="Spiceworks installation - Spiceworks scan settings" src="http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-scan-settings_thumb.png" alt="Spiceworks installation - Spiceworks scan settings" width="504" height="269" border="0" /></a></p>
<p><em>Spiceworks scan settings</em></p>
<p>9. Allow some time for the scan to execute.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-scan-results.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-scan-results.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="Spiceworks installation - Spiceworks scan results" src="http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-scan-results_thumb.png" alt="Spiceworks installation - Spiceworks scan results" width="504" height="179" border="0" /></a></p>
<p><em>Spiceworks scan results</em></p>
<p>10. If many error messages are displayed, try to determine what caused them. Usually Spiceworks will give you a good starting point, like indicating that a certain port is not available.</p>
<p>11. If only a few errors occurred, you can start browsing your inventory.</p>
<p>12. I suggest that you run Spiceworks as a service. To do so, right-click the Spiceworks icon at the bottom right and click &#8220;preferences.&#8221; Check “Spiceworks is running as a service” and provide the user/password. Running Spiceworks as a service will allow it to scan even if you are not logged on to the corresponding computer.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-service-preferences.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-service-preferences.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="Spiceworks installation - Spiceworks service preferences" src="http://4sysops.com/wp-content/uploads/2011/11/Spiceworks-installation-Spiceworks-service-preferences_thumb.png" alt="Spiceworks installation - Spiceworks service preferences" width="218" height="228" border="0" /></a></p>
<p><em>Spiceworks service preferences</em></p>
<p>Now you can start to explore the possibilities of this powerful network tool. You can set up email properties, monitors, and alerts. Almost everything is customizable; you just need to search a little. If problems come up, the Spiceworks community is a great resource for help. You also have access to a variety of Spiceworks extensions.</p>
Author: Vincent Boudreau
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/spiceworks-installation-guide/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>My favorite Windows Event log tools</title>
		<link>http://4sysops.com/archives/my-favorite-windows-event-log-tools/</link>
		<comments>http://4sysops.com/archives/my-favorite-windows-event-log-tools/#comments</comments>
		<pubDate>Wed, 02 Nov 2011 00:14:37 +0000</pubDate>
		<dc:creator>Bryan Campbell</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[monitoring]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7289</guid>
		<description><![CDATA[In this post I listed useful event log analysis tools for my daily work.]]></description>
			<content:encoded><![CDATA[<p><strong><i>In this post I listed useful event log analysis tools for my daily work.</i></strong></p>
<p>You probably know Event Viewer, a baked in Windows tool. For sophisticated event log analysis, you often need additional tools. Some of the tools discussed here are applications, and some are websites.</p>
<h2>EventID.NET</h2>
<p>I have a paid subscription for <a href="http://www.eventid.net/">EventID.NET</a>, and use this database for event ID searches. The site is a repository of almost all Windows event IDs and offers in-depth write ups, screenshots, and links to external sources. A one year subscription for an individual costs $29 USD.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-EventID.net_.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-EventID.net_.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="Event log tool - EventID.net" src="http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-EventID.net_thumb.png" alt="Event log tool - EventID.net" width="604" height="94" border="0" /></a></p>
<p><em>EventID.net -Search for event IDs</em></p>
<h2>ServerFault.com</h2>
<p>The consistently useful <a href="http://serverfault.com/">ServerFault.com</a> website has served me well since its inception. It is a crowd-sourced community of experts based on a Digg type voting system, in which a poster asks questions based on issues they are confronted with, usually scenario based, with Event IDs.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-ServerFault.com_.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-ServerFault.com_.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="Event log tool - ServerFault.com" src="http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-ServerFault.com_thumb.png" alt="Event log tool - ServerFault.com" width="604" height="232" border="0" /></a></p>
<p><em>ServerFault.com &#8211; Question and answer site for admins</em></p>
<h2>Experts-Exchange.com</h2>
<p><a href="http://www.experts-exchange.com/">Experts-Exchange.com</a> is another community site which is not limited to any platform or architecture. It has a similar voting system as Serverfault.com and issues awards based on the helpfulness of the &#8220;experts&#8221;.</p>
<p>Notice that Experts-Exchange.com is not free. After the 30-day free trial, prices vary from $12.95 USD for the monthly plan to the the two year plan for $189.95 USD.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-Experts-Exchange.com_.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-Experts-Exchange.com_.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="Event log tool - Experts-Exchange.com" src="http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-Experts-Exchange.com_thumb.png" alt="Event log tool - Experts-Exchange.com" width="603" height="403" border="0" /></a></p>
<p><em>Experts-Exchange.com &#8211; Tech support from experts</em></p>
<p>&nbsp;</p>
<h2>ManagEngine EventLog Analyzer</h2>
<p>I have used many of ManageEngines free tools, and <a href="http://www.manageengine.com/products/eventlog/">EventLog Analyzer</a> is my favorite. The tool works with Unix/Linux/Windows and can be configured to give real time alerts and offers sophisticated reporting features. The holy grail of all IT logging is the centralized logging ability. EventLog Analyzer can also collect logs from devices such as routers, web services and FTP servers. The free version supports up to 5 hosts. The Professional Edition starts at $395 USD for 10 hosts. Check out the <a href="https://store.manageengine.com/eventlog/index.html">price list</a> for other configurations.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-ManageEngine-EventLog-Analyzer.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-ManageEngine-EventLog-Analyzer.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="Event log tool - ManageEngine EventLog Analyzer" src="http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-ManageEngine-EventLog-Analyzer_thumb.png" alt="Event log tool - ManageEngine EventLog Analyzer" width="604" height="435" border="0" /></a></p>
<p><em>Eventlog tool ManageEngine EventLog Analyzer</em></p>
<h2>GFI EventsManager</h2>
<p><a href="http://www.gfi.com/eventsmanager">GFI EventsManager</a> provides similar features as the ManageEngine product offering real time alerts and support for SNMPv2 traps. I like the auto archive feature and its search filters. GFI doesn&#8217;t offer a free edition but you can <a href="http://www.gfi.com/downloads/register.aspx?pid=esm&amp;lid=en">download a free trial</a>. For a Server and 10 clients, GFI EventsManager costs $440 USD.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-GFI-EventsManager.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-GFI-EventsManager.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="Event log tool - GFI EventsManager" src="http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-GFI-EventsManager_thumb.png" alt="Event log tool - GFI EventsManager" width="604" height="453" border="0" /></a></p>
<p><em>Event log tool GFI EventsManager</em></p>
<h2>Netikus.net EventSentry</h2>
<p><a href="http://www.eventsentry.com/">EventSentry</a> offers quite a few interesting features that go far beyond event log monitoring and analysis: Compliance tracking, package managing, compliance tracking, log file monitoring, system health monitoring, and web reports. <a href="http://4sysops.com/archives/eventsentry-light-centralized-real-time-event-log-monitoring/">EventSentry Light</a> is its free version and is a must-have tool for every admin doing event log analysis. Check out the <a href="http://www.eventsentry.com/downloads/full-vs-light">comparison table</a> to get an overview of the capabilities for its free and full version. A configuration with 10 hosts will cost you $698 USD. The complete price list can be found <a href="http://www.eventsentry.com/pricing">here</a>.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-EventSentry.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-EventSentry.png','',event,300,75)"><img style="background-image: none; margin: 0px auto; padding-left: 0px; padding-right: 0px; display: block; float: none; padding-top: 0px; border: 0px;" title="Event log tool - EventSentry" src="http://4sysops.com/wp-content/uploads/2011/11/Event-log-tool-EventSentry_thumb.png" alt="Event log tool - EventSentry" width="604" height="508" border="0" /></a></p>
<p><em>Event log tool &#8211; Netikus.net EventSentry</em></p>
<p>Do you know any other good event log analysis tool?</p>
Author: Bryan Campbell
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/my-favorite-windows-event-log-tools/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>FREE: Verax NMS &#8211; Network and application monitoring</title>
		<link>http://4sysops.com/archives/free-verax-nms-network-and-application-monitoring/</link>
		<comments>http://4sysops.com/archives/free-verax-nms-network-and-application-monitoring/#comments</comments>
		<pubDate>Sat, 29 Oct 2011 02:00:51 +0000</pubDate>
		<dc:creator>External author</dc:creator>
				<category><![CDATA[Free Tools]]></category>
		<category><![CDATA[monitoring]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7272</guid>
		<description><![CDATA[Verax NMS is a network and application monitoring software running on Windows, Linux, Solaris and AIX. The free, “Express” version is limited to 25 managed elements.]]></description>
			<content:encoded><![CDATA[<p><strong><i>Verax NMS is a network and application monitoring software running on Windows, Linux, Solaris and AIX. The free, “Express” version is limited to 25 managed elements.</i></strong></p>
<p><em>Submitted by Eugene Rublovka</em></p>
<p><a href="http://www.veraxsystems.com/en/products/nms">Verax NMS</a> supports network elements (CISCO, Juniper, Adva, Foundry , etc.), applications (MySQL, Oracle RDBMS, Microsoft Internet Information Server, Apache Tomcat, IBM WebSphere, etc.), and data center elements (IP cameras, power supplies, etc.) in a single, integrated system.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/10/Network-and-application-monitoring-Verax-NMS-Sensor-summary.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/10/Network-and-application-monitoring-Verax-NMS-Sensor-summary.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none;" title="Network and application monitoring - Verax NMS - Sensor summary" src="http://4sysops.com/wp-content/uploads/2011/10/Network-and-application-monitoring-Verax-NMS-Sensor-summary_thumb.png" alt="Network and application monitoring - Verax NMS - Sensor summary" width="600" height="480" /></a></p>
<p><em>Network and application monitoring &#8211; Verax NMS &#8211; Sensor summary</em></p>
<p>The Rich Internet Application (RIA) front-end GUI is a differentiator, as well as built-in business reports (users can design their own), plugin based architecture (SDK available) and rules engine (for event processing and IT automation).</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/10/Network-and-application-monitoring-Verax-NMS-Business-Reports.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/10/Network-and-application-monitoring-Verax-NMS-Business-Reports.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none;" title="Network and application monitoring - Verax NMS - Business Reports" src="http://4sysops.com/wp-content/uploads/2011/10/Network-and-application-monitoring-Verax-NMS-Business-Reports_thumb.png" alt="Network and application monitoring - Verax NMS - Business Reports" width="600" height="480" /></a></p>
<p><em>Network and application monitoring &#8211; Verax NMS &#8211; Business Reports</em></p>
<h2><a href="http://www.veraxsystems.com/en/products/nms">Verax NMS</a></h2>
Author: External author
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/free-verax-nms-network-and-application-monitoring/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Winrpe &#8211; Nrpe for Windows</title>
		<link>http://4sysops.com/archives/free-winrpe-nrpe-for-windows/</link>
		<comments>http://4sysops.com/archives/free-winrpe-nrpe-for-windows/#comments</comments>
		<pubDate>Thu, 27 Oct 2011 19:05:07 +0000</pubDate>
		<dc:creator>Justin Shin</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[monitoring]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7266</guid>
		<description><![CDATA[Winrpe is a Windows client for the free monitoring software Nagios. This tutorial explains how to install and configure Winrpe.]]></description>
			<content:encoded><![CDATA[<p><strong><i>Winrpe is a Windows client for the free monitoring software Nagios. This tutorial explains how to install and configure Winrpe.</i></strong></p>
<p>In the first guide we installed <a href="http://4sysops.com/archives/free-nagwin-nagios-for-windows/">Nagwin on a Windows host</a>, configured the process, and set up an additional Windows host for monitoring. In this guide we will explore how to use <a href="http://www.itefix.no/i2/winrpe">Winrpe &#8211; a Nagios monitoring client for Windows</a> &#8211; to check on all kinds of server health indicators including CPU load, memory allocation, and error events in the Windows Event Log.</p>
<h2><a name="h.45qbw8hffu9"></a>Installing and configuring Winrpe</h2>
<p>Like Nagwin, Winrpe is an Open Source port of a Nagios client (nrpe) that is maintained by the folks at ITeF!x. It is available for <a href="http://sourceforge.net/projects/sereds/files/Nagios/winrpe/3.1.0/">download</a> on SourceForge. You will need to download and install Winrpe on each Windows host you would like to monitor. The installer will ask you for the installation path and the service account Winrpe will use. The path isn’t as important but be sure to note the service account name and randomly-generated password. Once the installation is complete, you will have a new Start menu folder with entries:</p>
<ol>   
<li>nrpe.cfg </li>
<li>Web site </li>
<li>Documentation </li>
<li>Uninstall NRPE </li>
</ol>
<p>You will want to open the shortcut to nrpe.cfg with your favorite text editor and being chipping away at nrpe configuration. Nrpe comes with a default configuration but you will need to tweak it according to your needs. Let’s look at the more important directives:    
<ul>   
<li><strong>allowed_hosts</strong>: Informs nrpe of hosts that are allowed to connect to the daemon. This list should include the IP address of your Nagios server and always the loopback address, 127.0.0.1 </li>
<li><strong>command_timeout</strong>: The amount of time nrpe will try to execute a given command before it gives up, or times out. I like to use a setting of 20 seconds for newer systems and 60 seconds for older systems, but your mileage may vary. </li>
<li><strong>connection_timeout</strong>: The amount of time nrpe will wait for a TCP connection to be established. You may want to set this to a fairly high value (60-120 seconds), especially if you are monitoring hosts across a site-to-site VPN or the Internet. </li>
<li><strong>include and include_dir</strong>: Used for including directives (usually commands) from another file. This is great if you have a shared config file for multiple hosts; for example, you may have a shared drive at \\fileserver\winrpe\base.cfg and other clients use this base configuration. Include_dir includes all config files in a directory. </li>
</ul>
<h2><a name="h.p861s8rfntwh"></a>Command Directives</h2>
<p>Command directives define commands that Nagios can use to access nrpe. The basic format is as follows:</p>
<p><code>command[ALIAS]=actualcommand.exe --params -w # -c #</code></p>
<p>The ALIAS is what Nagios will use to access your command. The actual command is placed on the right of the equals sign and indicates what the alias <em>does</em>. All command paths are relative to the ICW\bin folder and you will find that Winrpe pleasantly includes some useful tools in that folder.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/10/Nrpe-for-Windows-Winrpe-folder.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/10/Nrpe-for-Windows-Winrpe-folder.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none" title="Nrpe for Windows -Winrpe folder" alt="Nrpe for Windows -Winrpe folder" src="http://4sysops.com/wp-content/uploads/2011/10/Nrpe-for-Windows-Winrpe-folder_thumb.png" width="498" height="395" /></a></p>
<p><em>Winrpe foder</em></p>
<ul>   
<li><strong>check_nrpe</strong>: Verifies that nrpe is installed and listening on a host </li>
<li><strong>check_pdm</strong>: Checks processor, disk, and memory </li>
<li><strong>check_winevent</strong>: Checks Windows Event Log entries </li>
<li><strong>check_winfile</strong>: Checks for the presence and attributes of Windows files </li>
<li><strong>check_winprocess</strong>: Checks Windows processes </li>
<li><strong>check_winservice</strong>: Checks Windows services </li>
</ul>
<p>In addition, you can specify warning and critical values for each command. For example, if your command checks for error events, you might set only a critical value of 0, meaning that if your system has experienced any error events in the past 24 hours (&gt;0) it will be marked as critical.</p>
<p>We will define a sample command here for CPU load since most administrators would be interested in that sort of thing.</p>
<p><code>command[pdm_cpuload]=check_pdm.exe --processor -w 50 -c 80</code></p>
<ul>   
<li>Our <strong>alias</strong> is <strong>pdm_cpudload</strong> </li>
<li>The <strong>command definition</strong> is the built-in utility <strong>check_pdm.exe</strong> </li>
<li>We have one <strong>parameter</strong>, which is <strong>processor</strong> </li>
<li>The <strong>warning </strong>level is <strong>50 (percent)</strong> </li>
<li>The <strong>critical</strong> level is <strong>80 (percent)</strong> </li>
</ul>
<p>This command definition is usually included by default in your nrpe.cfg file so you can see it in action. It will check CPU load when requested, issuing a warning at 51% and a critical alert at 81%.</p>
<p>Once you have setup your nrpe.cfg file to your liking, go ahead and start the nrpe service through services.msc on your host. You may want to make this an automatic service.</p>
<h2>Winrpe on Windows 64-bit</h2>
<p>For some reason Winrpe does not play well on 64-bit Windows environments and it will eventually stop working. So, you need to create a scheduled task to execute the following batch script every 15 minutes or so (adjust as necessary):</p>
<p><code>net stop &quot;Nrpe&quot;      <br />taskkill /F /IM nrpe.exe       <br />net start &quot;Nrpe&quot;</code></p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/10/Nrpe-for-Windows-Restart-Winrpe.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/10/Nrpe-for-Windows-Restart-Winrpe.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none" title="Nrpe for Windows - Restart Winrpe" alt="Nrpe for Windows - Restart Winrpe" src="http://4sysops.com/wp-content/uploads/2011/10/Nrpe-for-Windows-Restart-Winrpe_thumb.png" width="600" height="17" /></a></p>
<p><em>Winrpe restart</em></p>
<p>As you can see, this simply stops the nrpe service, kills the associated process, and starts the service again. Not the most elegant solution, but it’s the only one that I’ve found to work!</p>
<h2><a name="h.rhe65y4acbwh"></a>Configuring the Nagios Server</h2>
<p>It’s time to wire everything up. Return to your Nagios Server and navigate to the ICW\etc\nagios\nagwin directory. Open the hosts.cfg file in your text editor and find your host definition. Below the host definition we will add a new service definition for that host.</p>
<p>  <code>
<p>define service {</p>
<p>use generic-service,srv-pnp</p>
<p>host_name fileserver</p>
<p>service_description CPU load</p>
<p>check_command check_nrpe!pdm_cpuload</p>
<p>}</p>
<p> </code>      
<p>This will define a new service for host fileserver. The service_description is what will appear for that row in your Nagios administration server, and the check_command is the command in nrpe (on your client) that you would like to run. In this case, it’s check_nrpe!pdm_cpuload.</p>
<p>Finally, you will need to restart your Nagwin_Nagios service to reflect these changes. When you restart Nagios and login to the administration console, you will see the following line item in your “Services” section:</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/10/Restart-Nagwin_Nagios-service.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/10/Restart-Nagwin_Nagios-service.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none" title="Restart Nagwin_Nagios service" alt="Restart Nagwin_Nagios service" src="http://4sysops.com/wp-content/uploads/2011/10/Restart-Nagwin_Nagios-service_thumb.png" width="600" height="18" /></a></p>
<p><em>Restart Nagwin_Nagios service</em></p>
<p>In the next guide we will explore <a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/">Nagios notifications and contacts</a>.</p>
<h2><a href="https://www.itefix.no/i2/winrpe">Winrpe</a></h2>
Author: Justin Shin
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/free-winrpe-nrpe-for-windows/feed/</wfw:commentRss>
		<slash:comments>7</slash:comments>
		</item>
		<item>
		<title>Nagwin &#8211; Nagios for Windows</title>
		<link>http://4sysops.com/archives/free-nagwin-nagios-for-windows/</link>
		<comments>http://4sysops.com/archives/free-nagwin-nagios-for-windows/#comments</comments>
		<pubDate>Mon, 24 Oct 2011 19:59:47 +0000</pubDate>
		<dc:creator>Justin Shin</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[monitoring]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=7237</guid>
		<description><![CDATA[Nagwin allows you to run Nagios, a popluar moniting software, on Windows hosts. In this guide we will install Nagwin on a Windows Server 2008 R2 host, configure the Nagios process by editing the config files, and monitor a Windows 2000 machine.]]></description>
			<content:encoded><![CDATA[<p><strong><i>Nagwin allows you to run Nagios, a popluar moniting software, on Windows hosts. In this guide we will install Nagwin on a Windows Server 2008 R2 host, configure the Nagios process by editing the config files, and monitor a Windows 2000 machine.</i></strong></p>
<p>Nagios is one of the most popular Open Source IT infrastructure monitoring tools available. Originally developed to monitor network hosts for uptime, latency, and health, Nagios has been extended to perform a variety of functions through its plugin interface. Though it is Open Source and generally intended for the Linux crowd, the folks at IteF!x have developed a port of Nagios for Windows &#8211; or <a href="http://www.itefix.no/i2/nagwin">Nagwin</a> &#8211; to allow a Windows host to run the Nagios process.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/10/Nagios-for-Windows-Nagwin.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/10/Nagios-for-Windows-Nagwin.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none" title="Nagios for Windows - Nagwin" alt="Nagios for Windows - Nagwin" src="http://4sysops.com/wp-content/uploads/2011/10/Nagios-for-Windows-Nagwin_thumb.png" width="600" height="362" /></a></p>
<p><em>Nagwin &#8211; A complete Nagios implementation for Windows</em></p>
<h2>Installing Nagwin</h2>
<p>Nagwin uses several packages to acheive Nagios functionality on Windows, including lightweight versions of Cygwin (a Linux API for Windows), PHP, Perl, Blat (SMTP server), and Nginx (web server). Thankfully all of these are included in the download for Nagwin at SourceForge.</p>
<p>Once you download the installer, unzip and run the resultant Nagwin_1.2.0_Installer executable to get started. During the installation, you will be prompted for where you want to put the “ICW” folder (the cygwin root). I like to put this directly on the hard drive so it is easy to get to “C:\ICW,” but this is a matter of personal taste. Next, you will be prompted to enter a service account name and password. Accepting the defaults here is fine unless you would rather use an existing service account. The password that is prepopulated is randomly generated and if you accept defaults you should save this password somewhere safe. Click “Install” to proceed.</p>
<h2><a name="h.gktpok1s107x"></a>Configuring the Nagios process</h2>
<p>Assuming you want Nagios to start automatically when your server starts, you should run the MMC console “services.msc” and scroll down to where all of the Nagwin services are. By default, these are manual startup services. If you go to Properties for each service you can configure them for an automatic startup. If they are running already, go ahead and stop them.</p>
<p>By default, the Nagios admin account (nagiosadmin) has the password “nagios” and that will not do, so let’s go ahead and change it. In a command prompt window, navigate to the ICW directory that you chose in the installation, then navigate to the “bin” folder. Now, run the command, replacing the italicized bit with your desired password:</p>
<p><code>htpasswd2 -b /etc/nginx/htpasswd nagiosadmin <em>your_password_here</em></code></p>
<p>You can create additional accounts but that’s what we will use for now. You can also change the port that is used to access the web management interface. By default, this is port 80, but you will probably want to change it to a lesser known (and less likely to conflict) port. I chose port 81 but you can choose any TCP port that is not already in use. To do so, navigate to the folder “\etc\nginx\nginx.conf” under the ICW directory and find the “server” block. Now change the “listen” directive from 80 to whatever you desire.</p>
<h2><a name="h.yeh8s8v1naqt"></a>Configuring Nagios to monitor a host</h2>
<p>Now the real work begins. Let’s assume that our Nagios server is located at 10.1.1.14 in a 10.1.1.0/24 subnet, and that we want to monitor another Windows host located at 10.1.1.10 (called “fileserver”) on the same subnet. To monitor the host we simply define a new host in the file “\etc\nagios\nagwin\hosts.cfg” and restart (or start) the Nagios process. First, open the hosts.cfg file in your favorite text editor (if it does not exist, create the hosts.cfg file in the “\etc\nagios\nagwin” directory). Using our example above, the host configuration is as follows:</p>
<p> <code>   
<p># Define a host for the local machine</p>
<p>define host{</p>
<p>use windows-server,host-pnp</p>
<p>host_name fileserver </p>
<p>alias fileserver</p>
<p>address 10.1.1.10</p>
<p>}</p>
<p> </code>  
<p><em>Note: alias is simply what Nagios calls the host, and in many cases it is appropriate to have the alias match the host_name. The important pieces here are the use, host_name, and address directives.</em></p>
<p>That’s it! Now we need to start all of our Nagwin services (there are four) in services.msc.</p>
<p>Once you have started these services, navigate to http://localhost:PORT_NUMBER and login using the username “nagiosadmin” and the password you defined earlier. Go to “Hosts” and voilà! Our newly defined host should appear along with “localhost” (where the Nagios process is located). You will notice that it provides detail regarding packet loss, latency (ping), and host uptime. Nagios saves this information in a repository that allows systems administrators to check the health of hosts as well as connectivity.</p>
<h5><a href="http://4sysops.com/wp-content/uploads/2011/10/Nagios-for-Windows-Nagwin-Connectivity.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/10/Nagios-for-Windows-Nagwin-Connectivity.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none" title="Nagios for Windows - Nagwin - Connectivity" alt="Nagios for Windows - Nagwin - Connectivity" src="http://4sysops.com/wp-content/uploads/2011/10/Nagios-for-Windows-Nagwin-Connectivity_thumb.png" width="600" height="17" /></a></h5>
<p><em>Nagwin &#8211; Connectivity</em></p>
<p>In the next guide we will learn about <a href="http://4sysops.com/archives/free-winrpe-nrpe-for-windows/">Winrpe</a>, a small daemon installed on Windows hosts to provide more detailed information about their health &#8211; CPU load, memory information, event logs and statuses &#8211; so that the Nagios process can probe these services and provide the administrator the information he or she needs to nip Windows host problems in the bud.</p>
<h2><a href="http://www.itefix.no/i2/nagwin">Nagwin</a></h2>
Author: Justin Shin
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/free-nagwin-nagios-for-windows/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Raffle: StatWin Server Enterprise &#8211; Employee Monitoring</title>
		<link>http://4sysops.com/archives/raffle-statwin-server-enterprise-employee-monitoring/</link>
		<comments>http://4sysops.com/archives/raffle-statwin-server-enterprise-employee-monitoring/#comments</comments>
		<pubDate>Tue, 21 Jun 2011 20:18:17 +0000</pubDate>
		<dc:creator>External author</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=6251</guid>
		<description><![CDATA[StatWin Server Enterprise is an employee monitoring software which supports website logging, keystrokes recording, instant messaging recording and more.]]></description>
			<content:encoded><![CDATA[<p><strong><i>StatWin Server Enterprise is an employee monitoring software which supports website logging, keystrokes recording, instant messaging recording and more.</i></strong></p>
<p><em>Author: Vitaly Dvorak</em></p>
<p>SXR software raffles three licenses of their employee monitoring software <a href="http://www.statwin.com/employee-monitoring-total/index.shtml">StatWin Server Enterprise</a> each worth $399 USD. You can monitor up to 25 employees with this license. The deadline of this contest is July 26, 2011. If you want to take part in this in raffle, please send an email with the subject StatWin to <script language="Javascript"> 
						document.write('<a href="mailto:contests');
						document.write('@4sys');
						document.write('ops.com" class="contact_us_email">');
						document.write('cont');
						document.write('ests@4sys');
						document.write('ops.com');
                                                document.write('</a>');
					</script>.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/06/Employee.Monitoring.StatWin.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/06/Employee.Monitoring.StatWin.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none; border: 0px;" title="Employee Monitoring - StatWin Enterprise" src="http://4sysops.com/wp-content/uploads/2011/06/Employee.Monitoring.StatWin_thumb.png" border="0" alt="Employee Monitoring - StatWin Enterprise" width="604" height="383" /></a></p>
<p><em>StatWin Enterprise employee monitoring</em></p>
<p>StatWin Server Enterprise monitors employee activity on network computers. The program allows the PC administrator to keep a check on users by capturing visited websites, recording keystrokes and mouse clicks, capturing ICQ, MSN, Outlook, Bat messages and more. Over a specified period of time, the program can take screenshots of the computer screen and save images to the selected destination. Collected statistics on employee activity is transferred from client computers to the server automatically.</p>
<p>The program also offers tools for remote administration of clients, remote installation, launch, shutdown and uninstallation of clients, automatic submission of collected data about user activity from clients to the server, as well as automatic notification of the administrator about events on clients in real time. StatWin Server Enterprise is a complete employee monitoring solution for enterprises, offices and educational institutions.</p>
<p>The program runs under Windows 7 / Vista / XP / 2008 / 2003 / 2000 (32-bit, 64-bit). The free 30-day demo version can be <a href="http://www.statwin.com/employee-monitoring-total/download.shtml">downloaded</a> without registration</p>
Author: External author
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/free-phonefactor-mobile-phone-based-two-factor-authentication/" title="FREE: PhoneFactor &#8211; Mobile phone based two-factor authentication (January 16, 2012)">FREE: PhoneFactor &#8211; Mobile phone based two-factor authentication</a> (1)</li>
	<li><a href="http://4sysops.com/archives/how-to-disable-usb-drive-use-in-an-active-directory-domain/" title="How to disable USB drive use in an Active Directory domain (January 2, 2012)">How to disable USB drive use in an Active Directory domain</a> (0)</li>
	<li><a href="http://4sysops.com/archives/service-account-best-practices-part-2-least-privilege-implementation/" title="Service Account best practices &#8211; Part 2: Least Privilege implementation (December 30, 2011)">Service Account best practices &#8211; Part 2: Least Privilege implementation</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/raffle-statwin-server-enterprise-employee-monitoring/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>FREE: EventSentry Light &#8211; Real-time event log monitoring</title>
		<link>http://4sysops.com/archives/eventsentry-light-centralized-real-time-event-log-monitoring/</link>
		<comments>http://4sysops.com/archives/eventsentry-light-centralized-real-time-event-log-monitoring/#comments</comments>
		<pubDate>Wed, 08 Jun 2011 19:24:47 +0000</pubDate>
		<dc:creator>Michael Pietroforte</dc:creator>
				<category><![CDATA[Free Tools]]></category>
		<category><![CDATA[log management]]></category>
		<category><![CDATA[monitoring]]></category>

		<guid isPermaLink="false">http://4sysops.com/?p=6196</guid>
		<description><![CDATA[EventSentry Light is free real-time event log monitoring tool for Windows.]]></description>
			<content:encoded><![CDATA[<p><strong><i>EventSentry Light is free real-time event log monitoring tool for Windows.</i></strong></p>
<p><a title="EventSentry Graphics" href="http://4sysops.com/wp-content/uploads/2008/01/eventsentry_graphics.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2008/01/eventsentry_graphics.png','EventSentry Graphics',event,300,75)"><img src="http://4sysops.com/wp-content/uploads/2008/01/eventsentry_graphics.png" alt="EventSentry Graphics" width="146" height="362" align="right" /></a><a href="http://www.netikus.net/">NETIKUS.NET</a> has released a new version of <a href="http://www.netikus.net/products_downloads.html">EventSentry Light</a>, a free real-time event log monitoring solution for Windows. EventSentry 2.92 has a few new features, which is why I updated the article. The first part is a general introduction about the tool&#8217;s monitoring capabilities and at the end you will find a list of the enhancements in version <a href="http://4sysops.com/archives/eventsentry-light-centralized-real-time-event-log-monitoring/#version 2.91">2.91</a> and <a href="http://4sysops.com/archives/eventsentry-light-centralized-real-time-event-log-monitoring/#version 2.92">2.92</a>. Also note that the free light version lifted some important limitations, which makes it interesting for complex environments. You will also learn more about this at the end of the article.</p>
<p>The Windows event logs are the first place to check when something goes wrong on a Windows machine. But even more important is to keep a constant eye on the event logs, to ensure you that you will be informed immediately about upcoming problems or if Windows or your applications enter certain states you want to be informed about. Vista and Windows 7 come with a significantly improved event log system, and the most important enhancement of EventSentry 2.91 is the full support for this sophisticated logging environment.</p>
<p>The Windows Event Viewer has also been improved, but if you want to monitor event logs on multiple machines then you still need a third-party tool such as EventSentry. Moreover, EventSentry Light has additional monitoring capabilities. For example, it supports environment monitoring (temperature, motion etc.), third-party log file monitoring, and system health checks. With the latter feature, you can monitor the availability of Windows services or processes, performance, disk space, and more. EventSentry Light also includes basic network monitoring capabilities using pings and TCP connections.</p>
<p>I will now give you a basic idea of EventSentry Light&#8217;s structure, although I will only scratch the surface of this sophisticated tool. I also recommend watching these <a href="http://www.eventsentry.com/support_screencast.php">screencasts</a> if you want to dig deeper. This is a faster and more convenient way of learning than poring over the manual.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2010/03/EventSentry.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2010/03/EventSentry.png','',event,300,75)"><img style="margin: 0px; display: inline; border-width: 0px;" title="EventSentry" src="http://4sysops.com/wp-content/uploads/2010/03/EventSentry_thumb.png" border="0" alt="EventSentry" width="604" height="486" /></a></p>
<p>Essentially, EventSentry Light works like a central filter to extract important information from all the event logs in your network. It collects the data, extracts the information that is relevant to you, and notifies you about them. The data is collected by the EventSentry agent that can be easily deployed using the management console. The agent uses filters where you can specify which Windows events are of interest you.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2008/01/eventsentry_light.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2008/01/eventsentry_light.png','',event,300,75)"></a>These filters are grouped in packages that can be assigned to computers individually or to computer groups. One limitation of the free version is that you can only work with one package with a maximum of four filters.</p>
<p>Once the data is collected, the information can be forwarded to you as e-mail or as pop-up messages on your desktop, Jabber, or pager. The light version only supports these four notification methods. Note that the full version supports 15 different notification types.</p>
<p><a name="version 2.92"></a>
EventSentry Light now includes a SNMP trap daemon, an easy way to receive SNMP traps via email or other notification methods. Performance and environment alerts now include an attached chart, visualizing performance of a given time period. For example, when the CPU exceeds a certain limit, the alert email will contain an attached chart so you can see an exact history without having to access the reporting interface.</p>
<p>Hardware monitoring was also improved, USB storage device changes are now monitored, as is the S.M.A.R.T. status of hard drives.</p>
<p><a name="version 2.91"></a></p>
<ul>
<li>Support for &#8220;new&#8221; Vista/Windows Server 2008 R2/Windows 7 event log subsystems</li>
<li>NTP Monitoring</li>
<li>Embedded scripts</li>
<li>Customize SMTP emails</li>
<li>Service monitoring distinguishes between services and drivers</li>
<li>Improved package management</li>
<li>File monitoring detects Alternate Data Streams</li>
<li>Jabber action supports chat rooms</li>
<li>Improved event log filtering capabilities</li>
<li>Software Monitoring uninstall events include more information</li>
<li>Windows updates are now monitored on Vista, Windows Server 2008 R2, and Windows 7</li>
<li>More customization for file monitoring</li>
</ul>
<p>The list below gives you an overview of the limitations that were lifted in EventSentry 2.91.</p>
<ul>
<li>SNPP (pager) notification available</li>
<li>Shutdown/kill process action available</li>
<li>Create 2 groups (increased from 1)</li>
<li>Create 4 filters (increased from 3)</li>
<li>Monitor 4 services (increased from 3)</li>
<li>Configure 2 application schedules (increased from 1)</li>
<li>Monitor 3 performance counters (increased from 2)</li>
</ul>
<p>Note that free version is now on the same release schedule as the commercial edition and updates for EventSentry will immediately be applied to EventSentry Light as well. Previously, the free version always lagged behind the full version. Please, check out this <a href="http://www.eventsentry.com/eventsentry-full-vs-light.php">comparison table</a> regarding the differences between the light and full editions.</p>
<h2><a href="http://www.netikus.net/products_downloads.html">EventSentry Light</a></h2>
Author: Michael Pietroforte
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/eventsentry-light-centralized-real-time-event-log-monitoring/feed/</wfw:commentRss>
		<slash:comments>11</slash:comments>
		</item>
		<item>
		<title>FREE: EVT LogParser &#8211; A Windows event log parser</title>
		<link>http://4sysops.com/archives/free-evt-logparser-a-windows-event-log-parser/</link>
		<comments>http://4sysops.com/archives/free-evt-logparser-a-windows-event-log-parser/#comments</comments>
		<pubDate>Sat, 14 May 2011 01:46:16 +0000</pubDate>
		<dc:creator>Michael Pietroforte</dc:creator>
				<category><![CDATA[Free Tools]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[troubleshooting]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=6121</guid>
		<description><![CDATA[EVT LogParser is a free event log parser that allows you to filter output according full text search in the message text.]]></description>
			<content:encoded><![CDATA[<p><strong><i>EVT LogParser is a free event log parser that allows you to filter output according full text search in the message text.</i></strong></p>
<p>The new event log viewer that came with Windows Vista is a major improvement that every Windows admin should appreciate. The filter and search features are great. However, one tiny feature is missing. You can&#8217;t filter the output according to a full text search through its GUI. You can only use Event Viewer&#8217;s search function to find specific terms in the event log message. But this means that you have to jump from entry to entry, which can be a bit cumbersome in some situations. Of course, you can also write your own parser. If you don&#8217;t like to mess with XML, however, you should have a look at <a href="http://martin77s.wordpress.com/2010/01/16/evtlogparser/">EVT LogParser</a>.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/05/Windows.Event_.Log_.Parser.EvtLogParser.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/05/Windows.Event_.Log_.Parser.EvtLogParser.png','',event,300,75)"><span style="color: #2e2302;"> </span><img style="margin: 0px auto; display: block; float: none; border: 0px;" title="Windows Event Log Parser -EvtLogParser" src="http://4sysops.com/wp-content/uploads/2011/05/Windows.Event_.Log_.Parser.EvtLogParser_thumb.png" border="0" alt="Windows Event Log Parser -EvtLogParser" width="495" height="453" /></a></p>
<p>The free event log parser allows you to load saved event logs and then filter the output according to the event ID, event sources, event type, and a keyword in the message text. The latter feature is the only thing you can&#8217;t do with the Windows Event Viewer.</p>
<p>To save events, you have to select one of the Windows logs and then click &#8220;Save all events.&#8221; You can also use Event Viewer&#8217;s own filter and then use this output for your search in EVT LogParser.</p>
<p>Windows Vista, Windows 7, Windows Server 2008, and Windows Server 2008 R2 save event logs in the evtx format, which you can load into EVT LogParser when you run the tool on one of those Windows versions. If you use EVT LogParser on Windows XP, you can only load the old evt format because the event log parser uses the API of LogParser.dll to parse event logs.</p>
<p>You also can&#8217;t load evt files on Windows versions that work with the evtx format. However, you can convert the evt format to evtx if you have some old saved event logs that you would like to parse. You can load the evt file in Event Viewer on Windows 7 (or Vista) and save it as an evtx file. If you have many evt files you want to convert, you can use the Windows command tool WevtUTIL. The programmer of EVT LogParser has more information on his blog.</p>
<h2><a href="http://martin77s.wordpress.com/2010/01/16/evtlogparser/">EVT LogParser</a></h2>
Author: Michael Pietroforte
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/free-evt-logparser-a-windows-event-log-parser/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>FREE: SuperbarMonitor &#8211; Monitor CPU, disk, and memory usage in the Windows 7 taskbar</title>
		<link>http://4sysops.com/archives/free-superbarmonitor-monitor-cpu-disk-and-memory-usage-in-the-windows-7-taskbar/</link>
		<comments>http://4sysops.com/archives/free-superbarmonitor-monitor-cpu-disk-and-memory-usage-in-the-windows-7-taskbar/#comments</comments>
		<pubDate>Sat, 15 Jan 2011 02:26:38 +0000</pubDate>
		<dc:creator>Michael Pietroforte</dc:creator>
				<category><![CDATA[Free Tools]]></category>
		<category><![CDATA[monitoring]]></category>

		<guid isPermaLink="false">https://4sysops.com/?p=5568</guid>
		<description><![CDATA[SuperbarMonitor is free tool that allows you to monitor CPU usage, disk usage, memory usage, battery level and volume control in the Windows 7 taskbar.]]></description>
			<content:encoded><![CDATA[<p><strong><i>SuperbarMonitor is free tool that allows you to monitor CPU usage, disk usage, memory usage, battery level and volume control in the Windows 7 taskbar.</i></strong></p>
<p>Windows 7 comes with sophisticated monitoring capabilities, but sometimes a simple solution is just what you need. <a href="http://superbarmonitor.de/">SuperbarMonitor</a> is a simple, portable monitoring tool that can display several monitors in the Windows 7 taskbar. You can monitor the CPU usage, disk usage, memory, and battery status. You can also use the tool for volume control. So if you want to keep an eye on operating system parameters, you don&#8217;t have to reserve a place in your precious screen space for your monitoring tool.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/01/Windows.7.taskbar.monitoring.Superbarmonitor.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/01/Windows.7.taskbar.monitoring.Superbarmonitor.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none; border-width: 0px;" title="Windows 7 taskbar monitoring - SuperbarMonitor" src="http://4sysops.com/wp-content/uploads/2011/01/Windows.7.taskbar.monitoring.Superbarmonitor_thumb.png" border="0" alt="Windows 7 taskbar monitoring - SuperbarMonitor" width="336" height="51" /></a></p>
<p>Each monitor has its own executable. For instance, if you only want to monitor the CPU usage, you just have to launch the corresponding program. With a single click on the taskbar icon, you can configure the few options that each of the monitors supports. For example, you can set high and critical levels where SuperbarMonitor will change the color of the indicator.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/01/Windows.7.taskbar.monitoring.Superbarmonitor.Battery.level_.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/01/Windows.7.taskbar.monitoring.Superbarmonitor.Battery.level_.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none; border-width: 0px;" title="Windows 7 taskbar monitoring - SuperbarMonitor - Battery level" src="http://4sysops.com/wp-content/uploads/2011/01/Windows.7.taskbar.monitoring.Superbarmonitor.Battery.level_thumb.png" border="0" alt="Windows 7 taskbar monitoring - SuperbarMonitor - Battery level" width="226" height="329" /></a></p>
<p>The monitoring tool only works for Windows 7. I also tried it on Windows Server 2008 R2, but the indicators in the taskbar didn&#8217;t work. However, this could have been because I tried SuperbarMonitor in a virtual environment.</p>
<p><a href="http://4sysops.com/wp-content/uploads/2011/01/Windows.7.taskbar.monitoring.Superbarmonitor.CPU_.usage_.png" onclick="return enlarge('http://4sysops.com/wp-content/plugins/zap_imgpop/','http://4sysops.com/wp-content/uploads/2011/01/Windows.7.taskbar.monitoring.Superbarmonitor.CPU_.usage_.png','',event,300,75)"><img style="margin: 0px auto; display: block; float: none; border-width: 0px;" title="Windows 7 taskbar monitoring - SuperbarMonitor CPU usage" src="http://4sysops.com/wp-content/uploads/2011/01/Windows.7.taskbar.monitoring.Superbarmonitor.CPU_.usage_thumb.png" border="0" alt="Windows 7 taskbar monitoring - SuperbarMonitor CPU usage" width="226" height="291" /></a></p>
<p>The SuperbarMonitor homepage is in German, but the user interface of the monitors is in English. To download the tool, click &#8220;neue Version.&#8221; The <a href="http://translate.google.com/translate?js=y&amp;prev=_t&amp;hl=en&amp;ie=UTF-8&amp;layout=1&amp;eotf=1&amp;u=http://superbarmonitor.de/&amp;sl=auto&amp;tl=en">Google &#8220;translate&#8221;</a> is more or less understandable. You won&#8217;t need any instructions anyway. Just extract the ZIP file and run one of the executables.</p>
<h2><a href="http://superbarmonitor.de/">SuperbarMonitor</a></h2>
Author: Michael Pietroforte
<br />
<small>Copyright &#169; 2006-2012, 4sysops, Digital fingerprint: 3db371642e7c3f4fe3ee9d5cf7666eb0</small><br />
	<br /><strong>Related</strong>
	<ul class="st-related-posts">
	<li><a href="http://4sysops.com/archives/poll-are-you-currently-using-a-monitoring-solution/" title="Poll: Are you currently using a monitoring solution? (January 17, 2012)">Poll: Are you currently using a monitoring solution?</a> (11)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-8-dashboards/" title="SCOM 2012 review &#8211; Part 8: Dashboards (December 28, 2011)">SCOM 2012 review &#8211; Part 8: Dashboards</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-7-linux-and-jee-monitoring/" title="SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring (December 26, 2011)">SCOM 2012 review &#8211; Part 7: Linux and JEE monitoring</a> (4)</li>
	<li><a href="http://4sysops.com/archives/notifications-and-custom-commands-in-nagwinnrpe/" title="Notifications and Custom Commands in Nagwin/Nrpe (December 23, 2011)">Notifications and Custom Commands in Nagwin/Nrpe</a> (0)</li>
	<li><a href="http://4sysops.com/archives/scom-2012-review-part-6-application-performance-monitoring-apm/" title="SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM) (December 21, 2011)">SCOM 2012 review &#8211; Part 6: Application Performance Monitoring (APM)</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://4sysops.com/archives/free-superbarmonitor-monitor-cpu-disk-and-memory-usage-in-the-windows-7-taskbar/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

