Skip to content

Instantly share code, notes, and snippets.

What would you like to do?
Panic Soft
#NoFreeOnExit TRUE
define ROOT C:\Program Files (x86)\nxlog
define CERTDIR %ROOT%\cert
define CONFDIR %ROOT%\conf
define LOGDIR %ROOT%\data
define LOGFILE %LOGDIR%\nxlog.log
Moduledir %ROOT%\modules
CacheDir %ROOT%\data
Pidfile %ROOT%\data\
SpoolDir %ROOT%\data
<Extension _json>
Module xm_json
<Input eventlog>
Module im_msvistalog
<Query Id='0'><Select Path='Security'>*</Select></Query>
Exec to_json();
<Output tcp>
Module om_tcp
##InsightIDR Collector IP Address
##Port for our IDR event source
Port 5140
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment