Hello
I was looking for some help with the syslog alert feature. I have an event that happens multiple times a day I writes to the syslogger via snare. I want to be alerted of that event. I setup a new alert thats as open as you can get it but im never alerted. Below is the configuration and the actual alert as the syslog has it. Thanks for any help you can provide.
General tab *
DNS Hostname Tab *
Message Tab
MessageTypePattern *
SyslogMessage Patter *has requested a recycle because it reached its private bytes memory limit*
Alert Action is email
**
PROD-WEB03 MSWinEventLog 1 System 2038 Fri 2009 1117 W3SVC Unknown User N/A Information PROD-WEB03 None A worker process with process id of '2184' serving application pool 'DefaultAppPool' has requested a recycle because it reached its private bytes memory limit. 47
**