Evtx file ingestion
This is gonna sound insane buuuuut…we have a team that has some evtx files that sit on a NAS. Using edge on an independent windows machine, is it possible to monitor the files on the NAS location to collect those files thru the Windows Event Logs source in Edge? Or is it only possible to collect the local windows files for that machine specifically?
Best Answer
-
Currently the Windows Event Log source is not built to accept any path; it will look in the normal file locations locally. But, we could take a feature request to specify the path where the event logs are located in the source.
0
Answers
-
Currently the Windows Event Log source is not built to accept any path; it will look in the normal file locations locally. But, we could take a feature request to specify the path where the event logs are located in the source.
0 -
Thank you for your response Sri! Ill go that route.
0