Using Evtsys.exe Forward Windows Event Logs to Kiwi Syslog Server

NetSec
NetSec
15.4 هزار بار بازدید - 6 سال پیش - There are lots of advantages
There are lots of advantages if you can put all your events into one centralized place, such as SIEM. How to forward your windows event logs to a SIEM or syslog server? Here is a simple and easy way, using Eventlog to Syslog utility (evtsys.exe).  

This video also shows how to install a free Kiwi syslog server on a Windows 2012 R2 virtual machine. Kiwi Syslog server is used to demonstrate collected syslogs from Windows 7 machine where Eventlog to Syslog Utility installed.

Subscribe me:  https://www.seevid.ir/c/Netsec?sub_...

Reference page:
https://engineering.purdue.edu/ECN/Re...

=======================================================
Recording IT life Blog:  https://51sec.org
6 سال پیش در تاریخ 1397/11/27 منتشر شده است.
15,413 بـار بازدید شده
... بیشتر