• v7.3.0
    • v7.11.0 (latest)
    • v7.10.0
    • v7.9.0
    • v7.8.0
    • v7.7.0
    • v7.6.0
    • v7.5.0
    • v7.3.0
    • v7.2.0
    • v7.1.1
    • v7.1.0
    • v7.0.8
  • Services & Support
  • Devo.com
  • Contact
    • Contact Us
    • Request a Demo
    • Partner Inquiry
  • Log In
    • USA Devo
    • EU Devo
PREVIOUS
SELinux configuration conflicts
NEXT
Configuring WMI for Devo file monitoring

Sending data to Devo / Event sources / Windows

Download as PDF

Windows

There are two ways you can send Windows system and event logs to Devo. It is also possible to use WMI to manage the remote collection of log events however this is very likely to have a negative impact on performance. Although this is not the preferred method, we also offer some instructions for setting up WMI to collect logs and send them to a Devo endpoint.

Snare Agent for Windows

The Snare Agent for Windows is a third-party tool. If you want to forward these events to your Devo domain, you must use the box.win_snare tag.

NXLog for Windows event collection

Customers who already use NXLog might prefer to use it to send their Windows events to Devo. When NXLog is used, you must use the box.win_nxlog tag. Read all about it here.

Download as PDF

PREVIOUS
SELinux configuration conflicts
NEXT
Configuring WMI for Devo file monitoring

Export

See what Devo can do for you. Request a demo!
Discover what's new (Release notes)
  • v7.3.0
    • v7.11.0 (latest)
    • v7.10.0
    • v7.9.0
    • v7.8.0
    • v7.7.0
    • v7.6.0
    • v7.5.0
    • v7.3.0
    • v7.2.0
    • v7.1.1
    • v7.1.0
    • v7.0.8
  • Services & Support
  • Devo.com
  • Contact
    • Contact Us
    • Request a Demo
    • Partner Inquiry
  • Log In
    • USA Devo
    • EU Devo
  • +1 888 6830910 (USA)
  • +34 900 838 880 (Spain)
Copyright © 2019 Legal Terms Privacy Policy Cookies Policy

Powered by Confluence and Scroll Viewport