Chapter 5. Collecting logs from Windows hosts

This chapter describes how to install and configure the syslog-ng agent on Microsoft Windows hosts.

The syslog-ng Agent for Windows is a log collector and forwarder application for the Microsoft Windows platform. It collects the log messages of the Windows-based host and forwards them to a syslog-ng server using regular or TLS-encrypted TCP connections.

The features and restrictions of the syslog-ng agent are summarized below:

The syslog-ng agent supports the following operating systems:

[Note] Note

Starting from version 3.0.3, the syslog-ng Agent for Windows application supports the new XML-based eventlog used format on Microsoft Windows Vista and Microsoft Windows Server 2008, and also offers full support for 64-bit operating systems.


© 2007-2010 BalaBit IT Security
Please send your comments or documentation bugs to: documentation@balabit.com