Windows Logs
The Windows Logs section includes five Windows log files. These mostly contain OS-related events:
- Application log: This log contains the events collected from various applications running on the system. These events can be from Microsoft or any other application.
- Security log: This log includes events such as successful and failed system login attempts. Engineers can specify which security events need to be recorded using audit policies.
- Setup log: This includes events related to application setup and adding/removing server roles.
- System log: This log includes events related to Windows system components. As an example, an event related to an automatic service start failure will be listed under this log.
- Forwarded Events: Using Event Viewer, we can connect to another remote computer and view the events. However, it may be required to watch for specific events from multiple sources. As an example, let's assume we need to collect events...