Hi guys
A quick question for those of you with any experience in NT/2000 eventlogs. I'm putting together a centralised logging script and one of the things I want to do is pull various eventlogs from remote servers. I've read through the docs on Win32::EventLog and it seems just the ticket. The only snag is I will be squirting this into a SQL table after dragging it across a network so I dont want to retrieve the whole eventlog each time. I notice there is a field called "RecordNumber" for each event retrieved, is this number unique inside the log and incremented with each event entry, thus producing a unique identifier of each record entered since the eventlog/PC was "built"? or is this number "recycled" when the log gets full and starts to overwrite itself? Basically I'm trying to avoid duplicate entries and additional bandwidth, would checking for the last "RecordNumber" logged in the SQL table and then reading from that record onward on the remote event log be a feasible way of doing this? Hope the above makes sense and thanks for your time. Kind Regards Ross PS - Any ideas on formatting commands for the "Data" portion of the retrieved record for printing on screen and dumping to SQL would be welcomed :-) ************************************************************************* GWR on the Web http://www.koko.com http://www.classicfm.com http://www.corefreshhits.com http://www.planetrock.com http://www.opusonline.co.uk http://www.gwrgroup.com CONFIDENTIALITY NOTICE The information in this e-mail and any attachments to it is confidential and may be legally privileged or prohibited from disclosure and unauthorised use. If you are not the intended recipient, any use, copying, disclosure, modification, distribution and/or publication of this message or its attachments (if any) is prohibited and may be unlawful. We will not accept liability for any claims arising as a result of the use of the internet to transmit information by or to GWR Group plc. *************************************************************************************************** _______________________________________________ Perl-Win32-Admin mailing list [EMAIL PROTECTED] To unsubscribe: http://listserv.ActiveState.com/mailman/mysubs
