FSSO with forwarded event logs
Hi,
We are trying an FG1500D and I would like to know if it's possible to do FSSO with the agent installed in a non-DC machine with subscription to forwarded AD's security event logs. The difference is that in the DC, the agent would read the "security" events and in this case, it should read the "forwarded" events. It would improve implementation also, as we have 8 DC's. With event log forwarding, we could centralize the security events in a machine and install the agent only there, and not in every DC. We also have policy of not installing third party software in Domain Controllers.
