Vista brings a new event forwarding feature for Windows Administrators. Event forwarding allows configuring a central event collector machine to collect events from other computers. This feature has a complete UI support in event viewer.
Here is a basic tutorial on how to get started.
Scenario:
Collect events from Machine2 using a collector on Machine1. Both Machines are in domain. User configuring subscriptions on Machine1 is administrator on Machine2
I intentionally simplified this to get up and running smoothly.
Steps:
Goto Machine2 ( Event source)
Thats it:).
Now your subscription is setup to receive events from Machine2. You can see these events in WindowsLogs/ForwadedEvents channel.There are various delivery modes, security mechanisms available which I will go in detail in future.
This fucntionality is built suing the brand new eventing system in Vista and uses WS-Management as transport.