Skip to main content
Version: 24.5

Events Log

The event log is a powerful diagnostic tool that, by default, centralizes critical and error events.

List view

eventlog This tab presents information on the event logs present on the device. By default, it filters errors and only displays those errors with Error or Critical severity, retrieving them from the device at 10-minute intervals.

The Event Log section lists events from the event viewer for Windows devices. By default, Workspaces only processes and displays in this section the critical and error events from the application, security, and system event logs.

Events, by default, are collected every 10 minutes. In Workspaces settings, this interval can be modified.

The default view is for Today, starting at 12:00 AM in the time zone defined in the Workspaces instance. Through the button below the search, the time filter can be changed to different values.

  • Today.
  • This week.
  • This month.
  • This quarter.
  • This year.

Filtering options

This view allows the same filtering functionalities available in Workspaces. An example of filtering in this view would be to filter by an event with a specific Id. to obtain a list of affected devices, and then apply corrective actions.

Events logs info in Workspaces

tabevent In the details view of a Windows device, a tab is activated that groups the event logs for that device.

Detail view

The event log detail view contains all the information about the event, including:

  • Event Date: Event registration date in day and time format.
  • Level: Event severity level.
  • Source: The source of the event.
  • Id. event: Numerical identifier of the event.
  • Log File: Event log file that hosts the event.
  • Machine Name: Hostname of the device logging the error.
  • Message: The content of the event message.

Additional event settings

Users with administrator roles can add events that do not meet the default filtering conditions. For example, they can add events with a specific ID that, although they have an informational severity level, are relevant to the organization, as well as change the events logs update time.