Threshold Event By Source Improvement
Event By Source could be very powerfull if you add the possibility to define a filter ID (Events to Exclude (comma separated)) like there is in Event System. In this way is possible to receive alerts from specific source in any case and decide if any specific event ID can be ignore.
For example:
- Category: Events By Source
- Source Folder: Other
- Custom Folder: Directory Service
- Event Severity: Warning
- Source Names or Event IDs: Microsoft-Windows-ActiveDirectory_DomainService
- Events to Exclude (comma separated): 3041
In this way I get all warning alert releated to Directory Service but ignore only event id 3041.
Thank you
3
votes
Claudio Lipone
shared this idea