logagent-input-windows-events
Version:
Plugin to collect windows events
42 lines (36 loc) • 973 B
Markdown
# logagent-inpt-windows-events
Plugin for [Logagent](https://sematext.com/loagagent) to collect windows events
1) Install [logagent 2.x](https://www.npmjs.com/package/@sematext/logagent)
```
npm i -g @sematext/logagent
```
2) Install this plugin
```
npm i -g logagent-input-windows-events
```
3) configure logagent
```
input:
windowsEvent:
module: logagent-input-windows-events
intervall: 10
providers:
- Microsoft-Windows-Security-SPP
- Microsoft-Windows-Security-Auditing
- Microsoft-Windows-DNS-Client
- Service Control Manager
- Microsoft-Windows-Kernel-General
- MsiInstaller
- Microsoft-Windows-RestartManager
- Microsoft-Windows-CAPI2
output:
elasticsearch:
url: http://localhost:9200
index: logs
```
4) Start logagent
```
logagent-windows --config myconfig.yml
```
5) Result in Kibana
