Posts

How to audit File / Directory delete Operations on a Windows System using security auditing.

Article created by Andre Lorbach. This article will guide you in how to setup Windows and MonitorWare Agent to track file and directory deletion processes. It is also possible to use EventReporter instead of MonitorWare Agent, however this article will target the more powerful MonitorWare Agent. The guide works both on Workstation and Server versions […]

ODBC on x64-Machines

By Rainer Gerhards Microsoft provides integration of 32bit software into the 64 bit world. They have worked quite hard to make any differences invisible to the user and even the programmer. However, there are some subtleties that cannot be totally hidden. One of them can be experienced in the ODBC subsystem. There are actually two […]

Monitoring Windows

Article created by Rainer Gerhards Article last updated by Florian Riedl Monitoring Windows is important even for small environments. Automatically monitored, critical failures can often be avoided. But how to monitor a system without too much effort? The basic idea behind a successful monitoring and alerting system is to centralize all system events at a […]

How to store custom properties of a log message in a database

Created by Timm Herget This step-by-step guide describes a scenario where WinSyslog receives syslog data from a Fortigate firewall, parses the messages via post processing action and writes the custom parsed properties into a database. Step 1 – Creating the Syslog Server First, please create the syslog server service by right clicking on “Services” and […]

Parsing log messages

Created by Michael Meckelein. This article describes how to parse log message via “Post-Process”. It illustrates the logic behind Post-Process action. Get relevant information from logs Log files contain a lot of information. In most cases only a small part of the log message is of actual interest. Extracting relevant information is often difficulty. Due […]

Scroll to top