#filter on event type
Get-EventLog -LogName ‘directory service’ -After (Get-Date).AddDays(-1) -ComputerName <servername> | where EntryType -eq ‘warning’
#filter on datasource , NTDS Replication or NTDS general
Get-EventLog -LogName ‘directory service’ -After (Get-Date).AddDays(-1) -ComputerName <servername> -Source ‘ntds general’