1

Using the CheckEventLog module of NSClient++, how do I properly filter in two different eventTypes?

view story
linux-howto

http://serverfault.com – I'm having an odd amount of trouble deducing the proper syntax to "filter=in" two eventTypes, warning and error. The line I am using is as follows: CheckEventLog -a truncate=1023 MaxWarn=1 MaxCrit=1 file='DFS Replication' filter=in "filter.eventSource='DFS Replication'" "filter.eventSource='DFSR'" "filter.eventType==error" "filter.eventType==warning" "filter+generated=\<5m" descriptions unique syntax='%message%' The "filter=in" means "include" all of the filters listed in the condition; versus "filter=out" meaning exclude all the filters listed in the condition. The "filter*X" syntax me (HowTos)