是否有任何好的服务/实用程序,甚至PowerShell脚本(最好是其中一个,因为这不会是连续的)可以将事件日志发送到中央系统日志服务器?
Snare for Windows Vista is a Windows@H_502_9@ 2008 and Windows Vista compatible@H_502_9@ service that interacts with the@H_502_9@ underlying “Crimson” Eventlog@H_502_9@ subsystem to facilitate remote,@H_502_9@ real-time transfer of event log@H_502_9@ information. Snare for Windows Vista@H_502_9@ also support 64 bit versions of@H_502_9@ Windows (X64 and IA64).
Event logs from the Security,Application and System logs,as well as the new DNS,File Replication Service,and Active Directory logs are supported. The supported version of the agent also accommodates custom Windows event logs. Log data is converted to text format,and delivered to a remote Snare Server,or to a remote Syslog server with configurable and dynamic facility and priority settings.