Archive Windows System logs (event viewer)

Hi Guys,
Good Day.
I want to export daily all System event logs and generate report to a .CSV or .TXT file and then copy the report file to,
the following location \\Archivenasprd01\Appspr01\ddmmyyyy:
or is it possible to schedule this job ever 1 or half on hour and copy all the system event logs to the same above location with create valid time-stamp
Any help would be appreciated. Thanks.

Hi,
>>or is it possible to schedule this job ever 1 or half on hour and copy all the system event logs to the same above location with create valid time-stamp
Based on your description, we can utilize a script and schedule a task to run the script to save the System event logs.
For the script, in order to get better help, we can ask for suggestions in the following two forums.
The Official Scripting Guys Forum
http://social.technet.microsoft.com/Forums/scriptcenter/en-us/home?forum=ITCG
Windows PowerShell
http://social.technet.microsoft.com/Forums/windowsserver/en-US/home?forum=winserverpowershell
Besides, the following blog can be referred to as reference.
Script to Save Event Logs
http://blogs.msdn.com/b/jjameson/archive/2011/03/04/script-to-save-event-logs.aspx
Best regards,
Frank Shen

Similar Messages

  • Windows 8.1 event viewer logs.

    I am looking for the windows 8.1 event viewer logs and settings, online search fails to produce answer, and suggested .msc commands are not valid. 

    Hi @butface ,
    Thank you for visiting the HP Support Forums and Welcome. I have looked into your issue with your Windows 8.1 and the event viewer. Here is how to open Event Viewer by clicking the Start button, clicking Control Panel, clicking System and Security, clicking Administrative Tools, and then double-clicking Event Viewer.
    I would be happy to assist if needed as there are many models of HP Notebook ,
    I would need the model number. How Do I Find My Model Number or Product Number?
    Please let me know.
    Thanks.
    Please click “Accept as Solution ” if you feel my post solved your issue, it will help others find the solution.
    Click the “Kudos, Thumbs Up" on the bottom to say “Thanks” for helping!

  • How do we do Archiving the system logs in SAP-BW

    Hi All
    How do we do Archiving the system logs in SAP-BW.
    Can anyone will let me know reagrding this
    If you have any docs also pls forward to my id [email protected]
    Thanks & Regards
    Balji

    Balaji,
    What is the landscape you have ?
    Windows / Unix / Solaris etc ?
    Also there are a lot of logs that are generated:
    Archive log ,
    System Log,
    Transaction log etc...
    The usual procedure is to copy them into another location and then delete the original file , the system will usually recreate the log and start logging new entries..
    Arun
    Hope it helps...

  • Retain Console System.log Events file for Usage Analysis

    I recently became interested in tracking the usage of some Apple computers. I discovered that the system.log events file in Console provides the login and logout times. So, I was able to use that to calculate how much time the computers are being used. This was very handy because there was data from October 2010 to June 2011. I went back a few days later and discovered the log files had been purged all except a few weeks of data. Is there any way to prevent them from being purged? Or, can I increase the size of the retained system.log file? What's the point of a log file tracking events if it's only going to be deleted? Alternatively there are programs designed to keep track of computer usage such as login and logout times as well as user usage by application. Would you recommend one of these?

    Thanks for bringing the typo to my attention. I've corrected that now. I'm reminded of the phenomenon by which we see and read words as groups of letters regardless of their positioning.
    I've not really had any specific system problems that cause huge log files. However, sometimes when diagnosing problems it's nice to have a long period of time to examine possible issues.
    Regarding your #3, opening .bz2 files... Have you saved these log files from Console and then tried opening them? It's just bazaar. The file opens to another file, then opens to another file, and so on. You never see the actual file contents. Others have observed the same thing.
    Regarding your #4, I created the script you mention. It's described here:
    http://www.resourcesforlife.com/docs/item4103
    However, I'd like to just go ahead and use the existing system.log events.
    Greg

  • Hp Pavilion Sleekbook insydeh20 bios system log events

    Hello, after few failure messages, now the laptop boot correcly, entering in BIOS and choice system log I see a list of events stored in a list, is there any utility or options for delete all the events (system diagnostic failure results)?
    The same for HP Diagnostic Tool UEFI Results, any option for cancel all events?
    Thank you
    Max

    Hello @shenseera ,
    Welcome to the HP Forums!
    I understand you're unable to make calls on your notebook because the mic is not working.
    What software are you using to make the calls? Does it say no mic detected or is it that people cannot hear you?
    Please test your mic by following this video:
    I would also suggest going through this guide to troubleshoot microphone issues in Windows 8: Resolving Microphone and Line-in Problems (Windows 8).
    Let me know if that works.
    Please click the "Kudos, Thumbs Up" at the bottom of this post if you want to say "Thanks" for helping!
    Please click "Accept as Solution" if you feel my post solved your issue, it will help others find the solution.
    The Great Deku Tree
    I work on behalf of HP.

  • OCS 10.1.2.2 Windows - oidldapd.exe - Event Viewer reports faulting appl.

    Hi, just a (maybe) useful information:
    I had troubles with several errors about OIDLDAPD.EXE reported in the Event Viewer on my Win2003ServerR2 box (OCS 10.1.2.2 installed).
    I was also experiencing stability problems. Now and then, parts of the environment (mail application and calendar especially) where crashing.
    I went into "my server" --> properties --> advanced, and excluded "oidldapd.exe" from being checked by the "Data Execution Prevention" feature, that was (at least on my server) enabled by default for all the processes running on the machine.
    Now, everything seems to run smoother than ever (at least during last week). No more instability, no more records in the Event Viewer.
    Hope this can be of help for anyone having similar problems.
    Roberto

    Hi,
    It could be a case of a corrupt installation which could be causing the crash.
    Could you please follow, ʇɐb ɹəuəllıʍ suggestion, and uninstall the current installation of Adobe Reader 10.1.2 and restart if prompted for.
    Try and install Reader 10.1.0 again (from ftp://ftp.adobe.com/pub/adobe/reader/win/10.x/10.1.0/zh_CN/AdbeRdr1010_zh_CN.msi).
    Now update the same to 10.1.2 using the installer from http://ardownload.adobe.com/pub/adobe/reader/win/10.x/10.1.2/misc/AdbeRdr1012.msp
    Try and launch Adobe Reader post the successful installation.
    Do ensure not to launch the application during the updating process.
    Hopefully this should fix things.
    Thanks
    Ankit

  • System Log Event ID 4321 every 30 seconds, system name conflict for a name not in use

    -- Symptom --
    System event log shows an error with event ID 4321 every 30 seconds:
    The name "pac-1          :2d" could not be registered on the interface with IP address 172.20.51.206. The computer with the IP address 172.20.21.2 did not allow the name to be claimed by this computer.
    -- Environment --
    OS:  Windows 7 x64 Enterprise
    Network:  Enterprise domain
    DHCP:  Yes
    WINS:  via DHCP
    -- Additional information --
    This computer was set up from an image.  The image was built with the system being named 'pac-1'.  This system's name was changed to 'pac-11' before (or possibly shortly after) joining the domain and now has a completely different name, and there
    is no system on the network with the name 'pac-1' (there are 'pac-3', and other numbers, but no 'pac-1')
    I have renamed the system with no change to the frequency of the error, and I cannot find 'pac-1' in the registry anywhere except for strings located in HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\LANDesk\Inventory\LogonHistory\Logons that list prior logons.
    I've done my google research and have found great information for plenty of other people's situations, just not this one.  Any helpful advice is welcome.
    Thank you!

    c0lorless wrote:
    -- Symptom --
    System event log shows an error with event ID 4321 every 30 seconds:
    The name "pac-1          :2d" could not be registered on the
    interface with IP address 172.20.51.206. The computer with the IP
    address 172.20.21.2 did not allow the name to be claimed by this
    computer.
    -- Environment -- OS:  Windows 7 x64 Enterprise
    Network:  Enterprise domain
    DHCP:  Yes
    WINS:  via DHCP
    -- Additional information -- This computer was set up from an image.  The image was built with the
    system being named 'pac-1'.  This system's name was changed to
    'pac-11' before (or possibly shortly after) joining the domain and
    now has a completely different name, and there is no system on the
    network with the name 'pac-1' (there are 'pac-3', and other numbers,
    but no 'pac-1')
    I have renamed the system with no change to the frequency of the
    error, and I cannot find 'pac-1' in the registry anywhere except for
    strings located in
    HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\LANDesk\Inventory\LogonHistory
    \Logons that list prior logons.
    I've done my google research and have found great information for
    plenty of other people's situations, just not this one.  Any helpful
    advice is welcome.
    Thank you!
    I'd check my WINS server's registration entries, if they contain an
    entry with that NETBIOS name. If the machine with the ip-address
    172.20.21.2 is not your WINS server you need to check, what services
    etc. are running on that machine. Also look if the domain/workgroup
    name, which is used by this machine is correct and identical to all
    other machines.
    Wolfgang

  • Archive and delete sap event management objects

    Team, I need to configure the archiving objects and residence time to Archive and delete EM objects. there are three steps of configuration, and I have never done this before.
    Can any one of you help me in setting up this config and the programs that need to run to archive and delete these objects.
    I would really appreciate you help and quick response on this.
    Define Archiving-Object-Specific Customizing
    Define Residence Times for Archiving or Deleting
    Define Settings for Deleting Document Flow
    Thank you!!!

    Hello Steffen,
    I was told that it would be possible to display archived and deleted event handlers using BAPI /SAPTRX/BAPI_EH_GET_DATA_GEN. I tested it, but could not verify this statement. SAP Help reads:
    "The archiving object /SAPTRX/A0 only supports a technical view in the Archive Explorer of the Archive Information System. This view is similar to the display in transaction SE16."
    It would be great if you could help clarify this. Thank you!
    Best regards,
    Philiipp

  • Error in Event viewer - COM Server application security Issue

    Dear All,
    I am installing one software on windows cluster environment. But while installing I am getting continuous error in System in Event Viewer as 'The application-specific permission settings do not grant Local Activation permission for the COM Server application
    with CLSID {xxxxxxxxxxxxx} and APPID {xxxxxxxxxxxxx} to the user NT SERVICE\SQL Server Distributed Replay Client SID (S-1-5-80-3249811479-4343554-65656-65665) from address LocalHost (Using LRPC). The security permission can be modified using the Component
    Services administrative tool.'
    I have seen in component services, that app ID I am getting for DReplayController service. On security tab if I want to give permission to that particular user then to which user I want to add in 'Launch and Activate permissions'. I am not getting 'SQL Server
    Distributed Replay Controller' user in list.
    So, please help me.
    Thanks in advance.

    Hi,
    Please try to add this account: NT AUTHORITY\SYSTEM.
    More information for you:
    The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 2012
    https://social.technet.microsoft.com/forums/systemcenter/en-US/cd8a2c95-70db-4df6-b7f5-eedcc5d898c7/the-applicationspecific-permission-settings-do-not-grant-local-activation-permission-for-the-com
    Event ID 10016 issue in SQL Cluster Server
    https://social.technet.microsoft.com/Forums/sqlserver/en-US/c5a27692-05c0-4ee4-b97f-1ea438b4e5f7/event-id-10016-issue-in-sql-cluster-server?forum=sqldisasterrecovery
    In addition, if there are any further requirements regarding SQL, here are some SQL forums below for you:
    https://social.technet.microsoft.com/Forums/sqlserver/en-US/home?category=sqlserver&filter=alltypes&sort=lastpostdesc
    Best Regards,
    Amy
    Please remember to mark the replies as answers if they help and un-mark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact [email protected]

  • Gnome 3 log file viewer crashes on file open

    Hi everyone,
        I'm experiencing an annoying issue in which the system log file viewer crashes when I load certain log files.  For example, if I go to file>open>crond.log, the viewer will crash. The same occurs with errors.log, kernel.log, pm-suspend.log, and others on a somewhat inconsistent basis.   When I relaunch the program, crond.log (or any of the other files in question) is open and can be viewed without a problem. 
    After I initially set up the system, I ran into permissions problems when trying to open a number of log files.  I added my user to the "log" group and then had to manually chmod the /var/log/ directory to resolve those issues.   The crash seems to occur on the log files that were originally restricted.  It does appear that some of the log files are still in the "root" group as opposed to the "log" group.
    I'm running Arch 64-bit with Gnome 3.0 (native install, not upgrade).   Has anyone else experienced this problem?  I'm somewhat of a novice with permissions so perhaps that's to blame. Still, it doesn't seem like the viewer should crash but then be able to open the file.
    Output of ls -l /var/log:
    total 34244
    -rw-r----- 1 root log 12691 May 15 20:44 auth.log
    -rw-r----- 1 root log 15189 May 15 10:31 auth.log.1
    -rw-r----- 1 root log 44949 May 8 09:01 auth.log.2
    -rw-r----- 1 root log 70857 May 6 18:01 auth.log.3
    -rw-r--r-- 1 root root 11577 May 15 20:44 boot
    -rw------- 1 root root 0 Apr 22 21:09 btmp
    drwxr-x--- 2 root root 4096 May 15 14:50 ConsoleKit
    -rw-r----- 1 root log 362 May 15 15:01 crond.log
    -rw-r----- 1 root log 1796 May 15 14:50 crond.log.1
    -rw-r----- 1 root log 1440 May 8 09:32 crond.log.2
    -rw-r----- 1 root log 4441 May 6 18:10 crond.log.3
    drwxr-xr-x 2 root root 4096 May 15 14:50 cups
    -rw-r----- 1 root log 44287 May 15 20:44 daemon.log
    -rw-r----- 1 root log 96821 May 15 14:41 daemon.log.1
    -rw-r----- 1 root log 128416 May 8 08:27 daemon.log.2
    -rw-r----- 1 root log 445951 May 6 17:14 daemon.log.3
    -rw-r--r-- 1 root root 48494 May 15 20:44 dmesg.log
    -rw-r----- 1 root log 6334 May 15 20:57 errors.log
    -rw-r----- 1 root log 10912 May 15 10:30 errors.log.1
    -rw-r----- 1 root log 4098198 May 7 18:36 errors.log.2
    -rw-r----- 1 root log 28279 May 6 17:23 errors.log.3
    -rw-r----- 1 root log 292780 May 15 20:57 everything.log
    -rw-r----- 1 root log 352142 May 15 14:50 everything.log.1
    -rw-r----- 1 root log 8504549 May 8 09:32 everything.log.2
    -rw-r----- 1 root log 2329358 May 6 18:10 everything.log.3
    -rw------- 1 root root 32064 May 8 08:28 faillog
    drwxrwx--T 2 root gdm 4096 May 15 20:44 gdm
    -rw-r----- 1 root log 237511 May 15 20:45 kernel.log
    -rw-r----- 1 root log 244356 May 15 14:41 kernel.log.1
    -rw-r----- 1 root log 8366407 May 8 08:09 kernel.log.2
    -rw-r----- 1 root log 1781951 May 6 17:23 kernel.log.3
    -rw-r--r-- 1 root root 292584 May 8 08:28 lastlog
    -rw-r----- 1 root log 195079 May 15 20:57 messages.log
    -rw-r----- 1 root log 247865 May 15 14:41 messages.log.1
    -rw-r----- 1 root log 4231866 May 8 09:29 messages.log.2
    -rw-r----- 1 root log 1620382 May 6 17:54 messages.log.3
    -rw-r--r-- 1 root root 12448 May 15 20:45 ntp.log
    drwxr-x--- 2 root root 4096 Apr 8 06:08 old
    -rw-r--r-- 1 root root 0 May 13 23:47 PackageKit
    -rw-r--r-- 1 root root 113304 May 15 17:09 pacman.log
    -rw-r--r-- 1 root root 203599 May 15 20:44 pm-powersave.log
    -rw-r--r-- 1 root root 289619 May 15 20:36 pm-suspend.log
    -rw-r----- 1 root log 701 May 15 20:44 syslog.log
    -rw-r----- 1 root log 619 May 15 10:00 syslog.log.1
    -rw-r----- 1 root log 1387 May 7 18:18 syslog.log.2
    -rw-r----- 1 root log 5309 May 6 17:14 syslog.log.3
    -rw-r----- 1 root log 9697 May 15 20:57 user.log
    -rw-r----- 1 root log 7773 May 15 10:31 user.log.1
    -rw-r----- 1 root log 6344 May 8 08:27 user.log.2
    -rw-r----- 1 root log 90189 May 6 17:14 user.log.3
    -rw-r----- 1 root log 0 May 15 14:50 uucp.log
    -rw-r----- 1 root log 0 May 8 09:32 uucp.log.1
    -rw-r----- 1 root log 0 May 6 18:10 uucp.log.2
    -rw-r----- 1 root log 0 Apr 25 01:11 uucp.log.3
    -rw-rw-r-- 1 root root 167424 May 15 20:57 wtmp
    -rw-r--r-- 1 root root 348288 May 6 17:14 wtmp.1
    -rw-r--r-- 1 root root 38995 May 15 20:44 Xorg.0.log
    -rw-r--r-- 1 root root 40721 May 15 20:36 Xorg.0.log.old

    w201 wrote:Dconf editor has completly vanished from my activities overview, well at least the GUI frontend, pacman shows that it's installed. Another function that seems to be gone in 3.16 is the ability to search for files from the activities overview!! I really hope that gets fixed soon :-(
    reinstalling dconf-editor fixed that issue for me

  • Essential event viewer bugs with "Forwarded Events" log in Windows Server 2008 R2 and Windows 7

    To my general experience, Windows event viewer is one of the most problematic, faulty management tools in the case of extensive use of its more sophisticated capabilities. The sole description as well as reproduction of some entangled failures would require
    remarkable effort.
    With the "Forwarded Events" log however, the situation becomes particularly worse in that even simple functionality fails and workarounds are difficult to find. That’s what I’ll describe here in order to share my experience with interested users.
    For precision: I’ve extensively used event viewer on a German Windows Server 2008 R2 SP1 (Windows SBS 2011 Standard SP1). The bugs I found on that system, I could reproduce on a German Windows 7 Professional 64-Bit SP1, too.
    Problem 1: Failure of even simple event filtering
    To reproduce this problem, execute these steps on a test machine with any of the two OS mentioned above:
    (i) To prepare log contents, do either of the following:
    (a) populate some events to your local "Forwarded Events" log (most simply by subscribing events from other logs of the same machine; stop subscription if you have collected some events)
    Or
    (b) copy a non-empty log file "ForwardedEvents.evtx" from another machine (with any of the two OS mentioned above) to your test machine and open the file in event viewer.
    (ii) Navigate to your "Forwarded Events" test log and open the filtering dialog. In the "Includes/Excludes Event IDs" field, type: 1-9000. Click OK.
    (iii) Look at the results pane: Surprise, 0 Events! Do you really have no event IDs between 1 and 9000 in your test log?
    (iv) Another example, if you have forwarded security events in your test log: Clear filter, if any previous filter is in place. Open the filtering dialog. In "Keywords" sub-dialog, choose "Audit Success". Click OK.
    (v) Look at the results pane: Surprise, 0 Events! Do you really have no successful security monitoring events in your test log?
    I’ll finish here. If you have a rich variety of events in your test log available, let your imagination run wild to test around. Finally include some simple manually created or modified XPath filters on the XML tab of the filtering dialog. I promise, you’ll
    find a lot of additional strange results.
    Problem 2: Cannot save manually selected events to .evtx file
    Navigate to your "Forwarded Events" test log. In the results pane, select one or more events by highlighting them by mouse clicks. In context menu, choose "Save selected events". In the "save as" dialog, choose file type *.evtx
    and save your file. Open the newly created file in event viewer. Result: Surprise, no events inside the new file!
    Have more fun with forwarded events
    Helmut

    Did you mean that right click Forwarded Event and select "Filter Current Log..."? Since I can filter correct event vai the "Filter Current Log..." in my Lab environment.
    Hi Justin,
    yes, I mean "Filter Current Log ... " (in my German systems: "Aktuelles Protokoll filtern ... ").
    What do you mean with "my Lab environment" exactly?
    In the meantime, I performed additional tests. I copied the "ForwardedEvents.evtx" test file from Server 2008 R2 resp. Windows 7 to
    (i) German Windows 8 Pro 64-Bit RTM
    (ii) German Windows 8.1 Pro 64-Bit, up-to-date
    in order to view and filter the file there.
    Results: Same event viewer problem on Windows 8 RTM, but correct behavior on Windows 8.1!
    Best regards, Helmut

  • How to save all event viewer log files in Windows 7 Professional

    Hello,
    I would like to save all Event Viewer logs from my Windows 7 Professional computer and be able to view them from another computer.  Currently I can only save one log at a time.  Please let me know how I can save all Event Viewer logs
    (Windows Logs, Applications and Service Logs, etc.).
    Thanks,
    Jason

    Hi Jason,
    There is no idea to save all categories log.
    It's recommend you ask in Official Scripting Guys forum for further help:
    http://social.technet.microsoft.com/Forums/en-US/home?forum=ITCG
    Besides that, this thread could be referred:
    http://social.technet.microsoft.com/Forums/en-US/d66c1bd7-0e61-4839-a5f6-cbe29661dccb/how-to-use-script-saving-log-from-event-viewer-into-csv-file?forum=ITCG
    Karen Hu
    TechNet Community Support

  • Create an Event log entry in Event Viewer in Windows 7, when processor exceeds a set percentage of usage

    Hi, I am trying to create an Event log entry in Event viewer in Windows 7 when the processor exceeds a set percentage of usage. I have unsuccessfully tried doing this through a Data Collection Set in the User Defined folder to monitor CPU usage
    and to trigger an Alert and log an entry when the CPU exceeds a set percentage of usage.  Any suggestions, and please if possible keep them simple and easy to follow, I am not to familar with Windows 7.  

    Hi, I am trying to create an Event log entry in Event viewer in Windows 7 when the processor exceeds a set percentage of usage. I have unsuccessfully tried doing this through a Data Collection Set in the User Defined folder to monitor CPU usage
    and to trigger an Alert and log an entry when the CPU exceeds a set percentage of usage.  Any suggestions, and please if possible keep them simple and easy to follow, I am not to familar with Windows 7.  

  • How do you change the Event Viewer archive location in Server 2008 R2?

    We're wanting to redirect the security and system event viewer logs to the D:\ on a Server 2008 R2 box
    We've got the current logs to save there, however all archived system/security logs are still being saved on the c:\ in their default location in %windir%\system32... and killing the OS partition.
    I can write something up in PoSh and schedule it, but I'd rather use any built-in capabilities first...
    I've taken a peek in the HKLM\Services\CurrentControlSet... hive where the event viewer behavior is configured and do not see an option to set a path for the archive location...

    Unfortunately, you cannot customize the location of archived event logs in Windows. The logs will always be archived to %windir%\system32\Winevt\Logs\Archive-xxxxxx
    There'd be some scripts can help you automatically archived logs to another location. You can find them here: http://gallery.technet.microsoft.com/scriptcenter/site/search?f%5B0%5D.Type=RootCategory&f%5B0%5D.Value=security
    Regards,
    Zhang     
    TechNet Subscriber Support
    If you are
    TechNet Subscriptionuser
    and have any feedback, please send your feedback here.

  • I wonder to know what is the enterprise solution for windows and application event log management and analyzer

    Hi
    I wonder to know what is the enterprise solution for windows and application event log management and analyzer.
    I have recently research and find two application that seems to be profession ,1-manageengine eventlog analyzer, 2- Solarwinds LEM(Solarwind Log & Event Manager).
    I Want to know the point of view of Microsoft expert and give me their experience and solutions.
    thanks in advance.

    Consider MS System Center 2012.
    Rgds

Maybe you are looking for

  • TS3540 Cannot open pdfs in OS 10.8.5

    After a recent upgrade to 10.8 from 10.6, Adobe Reader will not open pdf's. Help will be sincerely appreciated.

  • 404 error on iPad and iPhone

    I have an old site converted from GoLive to Dreamweaver. There is a password protected area on the site. The script for the password was created with GoLive and imported to DW. When trying to access the password protected page on iPad or iPhone there

  • Hp officejet 4620 all in one

    I recently replaced my old modem & router with a new Gateway AGT784WNV Wireless Router.  I have a iMac running OS 10.7.5.  I could not use the wi fi to connect to printer as I could not locate the Network.  So I bought a 2.0 USB and connected it and

  • Laser power levels

    everytime I try and burn a playlist in i-tunes i get the error message tht the laser power level could not be calibrated for this media. I have tried many different brands of cd-r disks, verbatim, maxell, tdk... one of the tdk worked on the first dis

  • Adding a watermark from App-Level script

    Hello all,   I've have a folder-level script that puts a button on the toolbar.  This button calls a function that will insert watermarks and append several PDF documents to the current one.  I've hit a roadblock with this.addWatermarkFromFile(). Whe