Which is the better process to monitor Windows Event Logs? APM or Log Forwarder? I see APM being limited by the license issue where as Log Forwarder and Syslog is unlimited. Maybe the better question are the events that we should be alerted? If we are sending all the events to the syslog using Log Forwarder than which events should have email notifiations? I am looking for best practices to get started.