Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
The performance counter '\\VSS2\LogicalDisk(HarddiskVolume1)\Free Megabytes' sustained a value of '87.00', for the '15' minute(s) interval starting at '12/14/2013 9:22:00 PM'. Additional information: None. Trigger Name:DatabaseDriveSpaceTrigger. Instance:harddiskvolume1
|3 Comments for event id 1006 from source MSExchangeDiagnostics|