As a Windows NT/2000 Infrastructure Engineer in my past life (while working for a major search engine) I found myself scratching my head when I was told that we, LogLogic, did not have Windows support. My reaction was: “Well... wait, what?” I couldn’t fathom why we were not logging the biggest gorilla in the server market. But of course... that was over three years ago, and things have changed quite a bit.
LogLogic now, and for the last 2+ years, has had full Windows parsing support, but the question often comes... “How does LogLogic gather Windows logs?”
This blog entry is a short piece to talk about the options available currently for Windows logging, and some of the challenges you may face, with, or without, a LogLogic appliance.