#[WinEventLog://Application] #checkpointInterval = 5 #current_only = 0 #disabled = 0 #start_from = oldest #renderXml=false [WinEventLog://Security] checkpointInterval = 5 current_only = 0 disabled = 0 start_from = oldest renderXml=false #[WinEventLog://System] #checkpointInterval = 5 #current_only = 0 #disabled = 0 #start_from = oldest #renderXml=false #[WinEventLog://Setup] #checkpointInterval = 5 #current_only = 0 #disabled = 0 #start_from = oldest #renderXml=false [WinEventLog] interval=60 evt_resolve_ad_obj = 0 evt_dc_name= evt_dns_name= index = idx_m-tic_windows sourcetype = WinEventLog renderXml=false ###### Host monitoring ###### #[WinHostMon://Computer] #interval = 600 #disabled = 1 #type = Computer #[WinHostMon://Process] #interval = 600 #disabled = 1 #type = Process #[WinHostMon://Processor] #interval = 600 #disabled = 1 #type = Processor #[WinHostMon://NetworkAdapter] #interval = 600 #disabled = 1 #type = NetworkAdapter #[WinHostMon://Service] #interval = 600 #disabled = 1 #type = Service #[WinHostMon://OperatingSystem] #interval = 600 #disabled = 1 #type = OperatingSystem #[WinHostMon://Disk] #interval = 600 #disabled = 1 #type = Disk #[WinHostMon://Driver] #interval = 600 #disabled = 1 #type = Driver #[WinHostMon://Roles] #interval = 600 #disabled = 1 #type = Roles