OS Information: graylog running on ubuntu 22.04 server
Package Version:5.1
I have read several articles on using nxllog and sysmon or Winlogbeat to capture windows event viewer logs and send to greylog
what I am NOT clear on is if I can do this without installing anything on the DC itself, as the logs I want to pull are from the Domain Controller.
can someone clear that up for me?