Hello, I have a sensor created to monitor the Windows event log for new events containing a certain string in the event message. What I'd like to know is, can I search for multiple message strings with the same sensor using an OR operator or something similar? Or do I need to create a separate sensor for each string I'd like to monitor for?
Thanks!
Add comment