Hello All,
I am a LEM Noob and I am trying to help my security team get it set up. I have a quick question, is there a way to customize what logs are collected by the LEM agents? I would like to ingest logs from a specific source in the MS Application log, called McLog. The LEM agent isn't ingesting these automatically. How do I configure it to do so?
Thanks a lot!!