Today we're talking about Logging Made Easy, a project that, as its name implies...makes Windows endpoint logging easy! I love it. It offers a simple, digestible walkthrough of several short "chapters" to get started. These chapters include:
Chapter 1 - Set up Windows Event Forwarding
Chapter 2 – Sysmon Install
Chapter 3A – Database (Easy Method)
Chapter 3B – Database (Manual Method)
Chapter 4 - Post Install Actions
Besides having a small issue with a batch script (resolved as of 5/3) and a another snafu (that's probably my fault), it's a simple and effective way to get logging spun up in your environment!
Get new episodes of 7 Minute Security automatically