Steps to Event Log Consolidation

Top  Previous  Next

Please follow the steps outlined below to consolidate event log records to a central database. Depending on the database you are using you might need to perform additional steps.

 

 

Microsoft SQL Server

MySQL

Oracle

MS Access

Setup the database during installation with MSI package

X

-

-

-

Seting up the database with the Database Setup Wizard

X

X

X

-

Database is already shipped with EventSentry

-

-

-

X

 

Setup the database during installation with MSI package

When using Microsoft SQL Server, you can have the database setup automatically during the installation. You will need to select a custom installation type and select Setup MS SQL Server when installing. You will then be prompted for the name of the database server, the name of the database and the initial passwords for the eventsentry_svc and eventsentry_web user accounts.

 

Setting up the database with the Database Setup Wizard

The Database Setup Wizard is a GUI application that can setup the required tables, indexes and permissions automatically for you. To use the wizard follow these steps:

 

1.Create an empty database (see your database documentation for details)
2.Setup an ODBC system DSN that points to the new database
3.Run the Database Setup Wizard

 

More information on the wizard is available in the Database Setup Wizard topic.

 

Database is already shipped with EventSentry

A default access database is already installed with EventSentry if you select Install Sample Access Database during the installation. An ODBC system DSN with the name of EventSentry Access is also setup automatically for you.

 

 

After the database is setup correctly, you will need to follow these steps to finish your event log consolidation:

 

1.Create / configure the ODBC target in EventSentry and configure it to either use a connection string (recommended) or a System DSN. Test the ODBC target.
 
2.Optional: If you are using a system DSN then make sure the specified ODBC System DSN exists on all machines that will write to the database. We recommend using AutoAdministrator if you need to roll out a system DSN name to multiple computers.

 

3.Create one or more include filters that will collect event log information and forward them to the ODBC target (database). Event log consolidation will not start until the event log filters are properly setup.

 

4.Use remote update to send the updated filters & target to all hosts running the EventSentry agent.
 
5.Setup the web reports to query the database through a web browser.