https://store-images.s-microsoft.com/image/apps.27512.7df0b6f0-d422-4661-af32-234552505c89.50d6453a-5dba-4cd9-8815-66812eab47e5.ac3454ab-236b-42c1-a9d6-1ac3cbd2fd36

Windows Forwarded Events

Microsoft Sentinel, Microsoft Corporation

Windows Forwarded Events

Microsoft Sentinel, Microsoft Corporation

Windows Forwarded Events

Note: Please refer to the following before installing the solution:

• Review the solution Release Notes

• There may be known issues pertaining to this Solution, please refer to them before installing.

The Windows Forwarded Events solution allows you to ingest all Windows Event Forwarding (WEF) logs from the Windows Servers connected to your Microsoft Sentinel workspace using Azure Monitor Agent (AMA).

Underlying Microsoft Technologies used:

This solution is dependent on the following technologies, and some of these dependencies either may be in Preview state or might result in additional ingestion or operational costs:

a. Agent based logs collection from Windows and Linux machines

Data Connectors: 1, Analytic Rules: 2

Learn more about Microsoft Sentinel | Learn more about Solutions