Skip to main content
Version: 24.9

Events Log

The event log is a powerful diagnostic tool that, by default, centralizes critical and error events.

List view

This tab presents information about the log events on the device. Filter errors and only show those with Error or Critical severity. It retrieves them from the device at ten-minute intervals. This time can be modified in the Workspaces settings.

The Event Log section lists the event viewer events for Windows devices. By default, Workspaces only processes and shows in this section the critical and error events from the application, security, and system event logs.

eventlog

The default view is for Today, which starts at 12:00 p.m. in the time zone defined in the Workspaces instance. The time filter can be changed to the values:

  • Today
  • This week
  • This month
  • This quarter
  • This year

Filtering options

This view allows the same filtering functionalities available in Workspaces. An example would be to filter by an event with a specific ID to obtain a list of affected devices, subsequently applying corrective actions.

Events logs info in Workspaces

tabevent In the details view of a Windows device, a tab is activated that groups the event logs for that device.

Detail view

The detail view of an event log contains all its information:

  • Event Date: event registration date in day and time format
  • Level: event severity level
  • Source: event source
  • Event ID: numeric identifier of the event
  • Log File: event log file that hosts the event
  • Machine Name: hostname of the device that logs the error
  • Message: content of the event message

Additional event settings

Users with an administrator role can add events that do not meet the default filtering conditions to, for example, add events with a specific ID that, although they have an informational severity level, are relevant to the organization, as well as change the log update time.