Ingest Windows eventlog: NXlog or Winlogbeat?

Hello the Forum !

For Ingesting Windows eventlog, I have trouble choosing between NXlog and Winlogbeat.

What do you advise me, knowing that I am looking for the simplest solution to implement?

Thank you in advance.

Winlogbeat, which is already wrapped inside Sidecar. Sidecar would give you central management from Graylog :

  1. Get the latest Sidecar executable from : Releases · Graylog2/collector-sidecar · GitHub
  2. Install the Sidecar on your Windows system (which includes Winlogbeat) : Graylog Sidecar — Graylog 4.0.0 documentation
  3. Follow the step by step guide to configure it : Graylog Sidecar — Graylog 4.0.0 documentation
  4. Enjoy :slight_smile:
3 Likes

Winlogbeat. Easy to use and setup.

This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.