I am very new to ELK stack. I have setup a stack using two Windows Server 2012 R2 VM machines, one is for Logstash and other for Kibana and Elastic search. Initially, I was thinking to use nxlog for logs forwarding but I came to know that I may use Windows events as well using group policy.
Can anyone help me in this regard? Please refer me to step by step guide or if anyone has an experience in it, let me know.
Why I don't want to use logstash-forwarder because then I will have to install Java on all of our Servers which I don't want obviously.