TiazfaD
asked on
Forwarding logs from domain controller to SIEM Server
Hi Experts,
What are the steps to forward logs collected at Domain Controller to another Server like SIEM,
considering , if we need to understand issues like account lockouts, would this be sufficient.
Thanks,
T
What are the steps to forward logs collected at Domain Controller to another Server like SIEM,
considering , if we need to understand issues like account lockouts, would this be sufficient.
Thanks,
T
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
Thankyou btan and Sajid!
ASKER
Can we forward the event logs directly from the domain controller Server to a SIEM Agent, or do we need to collate all the logs in a WEF and then forward them to the SIEM.
Thanks,
T