6 Replies Latest reply on Mar 14, 2017 5:32 AM by penoffd

    Windows collector not sending logs to SIEM receiver

    viresh_sec

      I have to receive logs of a  windows server (windows server 2008) hosted application on SIEM. I used windows collector version 11 (latest), configured collector using generic log tail method. I given the path of directory & file name in the collector but I am unable to get any log on SIEM receiver. I tested on the collector on different server and different SIEM receiver also, but could not get any log on receiver. All firewall policies are applied, collector is in connected & running state. When I use tcpdump tool to see communication of collector and receiver I see output of only synchronization  between them , no logs being sent on receiver. What may be possible cause of problem, please help.