Submit a ticketCall us

AnnouncementsWeb Help Desk Integrations eCourse

Looking to reduce response times? Sign up for our eCourse to learn how integrating Web Help Desk with Dameware Remote Support, Network Configuration Manager, Network Performance Monitor, and Server & Application Monitor can improve communication efficiencies.

Register here.

Home > Success Center > Network Performance Monitor (NPM) > WMI polling causes the Windows Security Event log to fill up

WMI polling causes the Windows Security Event log to fill up

Table of contents
Created by Tiarnan Stacke, last modified by MindTouch on Jun 23, 2016

Views: 1,430 Votes: 0 Revisions: 6

Overview

When polling Windows Servers via WMI, the Windows Security Event Log generates a lot of logs.

Environment

  • All NPM versions
  • All SAM versions

Detail

The cause of this is that Auditing is enabled on the target node. For information on how to configure this, please refer to Microsoft Documentation: Configuring Audit Policies.

When left on default settings, each Node Poll will generate a Logon/Logout event.

With SAM Polling, each component monitor within a template functions independently from the others. With Windows auditing enabled, each component monitor will generate one successful login and one successful logout event in the security event log each time it is polled.

 

Last modified

Tags

Classifications

Public