Applications Systems
Display Windows Event Log Monitor messages within alert emails in SAM
Learn how to display details about Windows Event Log Monitor messages in the body of emails triggered by alerts configured for SolarWinds SAM.
First published date
Last published date
Overview
This article describes how to display log messages in emails that are triggered by alerts configured for Windows Event Log Monitors in SAM. Instructions appear below.
A Windows Event Log Monitor is a specific type of component monitor; other types include Performance Counter Monitors and Windows Service Monitors. To learn more, see Work with SAM Component monitors.
Here are additional documentation links about component monitors and alerts:
- Windows Event Log Monitors (SAM online help)
- Use alerts to monitor your SAM environment (SAM online help)
- Alerting overview SolarWinds Platform Administrator Guide)
Product section
Resolution
- Open the SolarWinds Platform Web Console.
- Go to Settings > All Settings.
- In the Alerts & Reports group, click Manage Alerts.
- In the Alert Manager toolbar, click Add New Alert.
- Complete the Alert Properties, and then click Next to advance to the trigger condition settings.
- In the Trigger Conditions:
- From the I want to alert on drop-down menu, select Component.
- Trigger Alert when all child conditions must be satisfied (AND)
- Component Status is equal to Down
- Component Type is equal to 42 (This will filter it down to Trigger on Windows Event Monitors)
- Go to the Trigger Actions and add your Email Action.
- Use the following variable:
${N=SwisEntity;M=ComponentAlert.WindowsEventMessages}