Description |
This article describes how to configure the User Log in a Windows template configuration. |
Scope | FortiSIEM, Windows Agent. |
Solution |
Reporting IP = <Host_IP> Raw Event Log CONTAIN WUA-UserFile
Note: If the monitoring file doesn't create new log lines while monitoring, no events will show up in Analytic. To test, open the file, copy some lines that contain the prefix and paste them at the end of the file -> Save. Run the Analytic Query again.
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.