Comprehensive and Detailed Explanation From Exact Extract:
To collect and analyze Windows event logs in SolarWinds Hybrid Cloud Observability, you must:
Deploy and configure the platform agent on the Windows server: The agent is responsible for collecting logs locally, including event logs, and sending them to the SolarWinds platform for analysis.
Configure the Windows server to send logs to the SolarWinds platform: This can be achieved by forwarding event logs from the Windows server to the server running the SolarWinds platform (e.g., via Windows Event Forwarding or syslog if using third-party tools).
Simply configuring rules within the platform does not automatically grant access to Windows event logs; deployment of the agent or configuration of log forwarding is required for collection. This requirement is outlined in the Log Analyzer Administrator Guide and the Hybrid Cloud Observability documentation for Windows log collection.
[Reference:, , Log Analyzer Administrator Guide, “Collecting Windows Event Logs,”, , Hybrid Cloud Observability Admin Guide, “Windows Log Collection Methods”, ===========, ]
Submit