I want to monitor all the windows event logs and make it available if someone comes to me and ask for the event log on these particular day.
We have a situation here where a system admin deleted the windows event log from their servers and came to me asking if i can see those logs for that particular day on solarwinds. I was unable to show any logs from solarwinds. Can anyone help me how i can achieve this if any future requests come. I have SAM, NPM and other modules installed.
I also see a windows event log template in SAM. Can i use this to monitor and store every event and make it available any time??