If you don’t have any SIEM yet, you can start to monitor some Windows security events with Centreon & NsClient++. We’ll use the sheet cheat Top Windows events you should monitor to help us create desired services :) Prerequisites You need to have the following features already implemented : a …
Read More »Top Windows events you should monitor
Your infrastructure continuously generates log data that you can use to monitor network infrastructure and manage security events. I share you my cheat sheet of importants events that I used to monitor, but before, lets activate all the logs we need 1 / Enable Advanced auditing For some events we’ld …
Read More »