Link to home
Start Free TrialLog in
Avatar of TiazfaD
TiazfaD

asked on

Forwarding logs from domain controller to SIEM Server

Hi Experts,

What are the steps to forward logs collected at Domain Controller to another Server like SIEM,

considering , if we need to understand issues like account lockouts, would this be sufficient.

Thanks,
T
SOLUTION
Avatar of Sajid Shaik M
Sajid Shaik M
Flag of Saudi Arabia image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of TiazfaD
TiazfaD

ASKER

Hi Experts,

Can we forward the event logs directly from the domain controller Server to a SIEM Agent, or do we need to collate all the logs in a WEF and then forward them to the SIEM.

Thanks,
T
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of TiazfaD

ASKER

Thankyou btan and Sajid!