ceramicskate0 / SWELF

Simple Windows Event Log Forwarder (SWELF). Its easy to use/simply works Log Forwarder and EVTX Parser. Almost in full release here at https://github.com/ceramicskate0/SWELF/releases/latest.
https://ceramicskate0.github.io/SWELF/
GNU Affero General Public License v3.0
24 stars 7 forks source link

Microsoft-WindowsCodeIntegrity/OperationalError #78

Closed ceramicskate0 closed 5 years ago

ceramicskate0 commented 5 years ago

Describe the bug SWELF cant seem to use API to get TaskScheduler\Operational Event logs

ceramicskate0 commented 5 years ago

Microsoft-WindowsCodeIntegrity/Operational now same issue

ceramicskate0 commented 5 years ago

and now microsoft-windows-applocker/* logs

ceramicskate0 commented 5 years ago

wevtutil set-log Microsoft-Windows-TaskScheduler/Operational /enabled:true to enable Eventlog Taskscheduler\Operational

ceramicskate0 commented 5 years ago

removed the Microsoft-Windows-TaskScheduler/Operational. issue witht hat log is posted above to solve....enable it.....yep

ceramicskate0 commented 5 years ago

fixed 0.5.0.4