Windows logs and raw logs


Today, I use the sidecar with Winlogbeat to collect Windows logs and use a GELF format to obtain a parsed logs in Graylog GELF input (Not use extractor or pipeline for this, except to remove the winlogbeat prefix).

For others logs types, I use Rsyslog to collect and forward to two differents outputs:

Is it possible to send raw logs from winlogbeat or from graylog output to store raw logs to a third party server ?


This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.