Pull specific entries from Windows event logs

Is it possible to pull specific events from the Windows event logs and report on them from UberAgent?

1 comment

  • Avatar
    Helge Klein Official comment

    We try not to duplicate functionality in uberAgent that is already well implemented in Splunk's Universal Forwarder. This is such a case.

    Take a look at Splunk's documentation page Monitor Windows event log data.

    For an alternative solution that does not involve Splunk's Universal Forwarder please see our practice guide Querying Windows Event Log.

Please sign in to leave a comment.