About Event Log Search

Event Log Search (ELS) manages your event logs enabling you to get on with the job of administering the network. The job of looking through all the event logs on even a small number of computers can be a difficult task, attaching to each one in turn, setting up the filter, investigating the events and then moving on to the next. ELS takes away this laborious routine and will notify you when a problem arises. No longer will you find out the hard way that a disk has failed on a raid controller. ELS can be used as a security tool, for example to automatically monitor login and logout actions and report audit failures. ELS can be used in support of Service Level Agreements, providing archived entries of system restarts your team can quickly show system availability.

Further information on how Event Log Search can help your company is available on the resources page.

System administrators should establish a policy of manually scanning Exchange Server event logs on a regular basis. Being familiar with normal event logs gives you valuable insight when you examine the event log of a server that is experiencing problems. In addition, you can monitor the system for problems using automated procedures.

-- Microsoft Exchange Resource kit.