I'm trying to monitor critical events in the Windows event log for my ADFS servers. These events are in the log "AD FS\Admin". When I configure the sensor, I can choose Applications, Security, Systems and others. The log I'm looking for is not listed... Is there a built-in way to monitor my ADFS\Admin log?
The physical path of the log: %SystemRoot%\System32\Winevt\Logs\AD FS%4Admin.evtx
Add comment