1
answer

om_file to write in .evtx files

Hi,

I want to store my logs in .evtx file in windows. I tried following configuration.

<Output out2>    
    Module      om_file
  File     '%ROOT%\tmp\test.evtx'

</Output>

This created evtx file but it was also opening with notepad, wordpad,etc. For security purpose, I want to make it open with MS EventViewer API only.

Is this possible using nxlog om_file module? Is there any plugin for nxlog to store data in .evtx files?

AskedNovember 9, 2016 - 11:23am
0
answers

Nxlog module

Hi, 

I am doing a rule which detects me are making multiple responses of ICMP from the same IP in which there are diferent IPs.

 

The problem that i have is that don't write in the output with raw_event and file_write. In file_write I put the "otro" file. 

Do you know it can be?

 

Antonio.

 

File nxlog.conf:

 

<Extension fileop>
    Module      xm_fileop
</Extension>

AskedMay 13, 2016 - 9:39pm
1
answer

NXLog CE: function for logs transfer

Hello

I write input module for nxlog. I have wrote function to read data but I don't know how to tranfer data further. Which function should I call? nx_logdata_set_string?

AskedJuly 31, 2015 - 2:22pm