What logs should I collect from a Windows server network?

Posted by Cygnus X on Server Fault See other posts from Server Fault or by Cygnus X
Published on 2012-12-13T16:07:52Z Indexed on 2012/12/13 17:05 UTC
Read the original article Hit count: 168

Filed under:

I'm setting up a log collection server for my Windows network (about 30 servers ranging from 2003 to 2008 R2, and about 300 vista/7 clients), and I was wondering which logs are good to collect and which ones are a waste of time. I'm going to collect the obvious ones (system, security, event, firewall, and role specific logs) but are there any others I should be worried about? I'm using Splunk if that helps answer the question.

© Server Fault or respective owner

Related posts about logging