Microsoft-Windows-Eventlog-ForwardPlugin
| Event | Title | Channel | Sample | Rule |
|---|---|---|---|---|
| 100 | The subscription {Id} is created successfully. | Operational | N | N |
| 101 | The subscription {Id} is created; but one or more channels in the query could … | Operational | N | N |
| 102 | The subscription {Id} can not be created. | Operational | N | N |
| 103 | The subscription {Id} is unsubscribed. | Operational | N | N |
| 104 | The forwarder has successfully connected to the subscription manager at address … | Operational | N | N |
| 105 | The forwarder is having a problem communicating with subscription manager at … | Operational | N | N |
| 106 | Subscription policy has changed. | Operational | N | N |
| 107 | A subscription policy contains invalid configuration. | Operational | N | N |
Event ID 101: The subscription {Id} is created; but one or more channels in the query could not be read at this time.
#Fields #
| Name | Description |
|---|---|
Id |
Event ID 102: The subscription {Id} can not be created.
#Event ID 104: The forwarder has successfully connected to the subscription manager at address {SubscriptionManagerAddress}.
#Fields #
| Name | Description |
|---|---|
SubscriptionManagerAddress |