Windows Logfile and ServersCheck
In our Windows Logfile we see a many entrys from ServersCheck User. Every Second is a entry but the rule is starting every 3 minutes. Why so many entrys in the logfile?
This discussion has been closed.
Comments
Logon ID 540
Logon ID 576
Logoff ID 538
here was one event:
Event Type: Success Audit
Event Source: Security
Event Category: Logon/Logoff
Event ID: 538
Date: 09.10.2007
Time: 09:27:08
User: XXX
Computer: XXX
Description:
User Logoff:
User Name: XXX
Domain: XXX
Logon ID: (0x0,0x1440B5F8)
Logon Type: 3
For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
the rule checks every 3 Minutes, not every second
why is every second the logon and logoff
CPU
RAM
HDD
we don´t like the windows health becouse we logging into a SQL Database and Reporting from this Base. For better reporting we need always one Value not 3 Values in one Cell
Ping
but for this rule we need no logon :-)
the cpu check is every 3 minutes
the ram check is erver 5 minutes
the HDD check is every 10 minutes
this check can not make every second a logon or logoff event
Sorry but can't say more than this.