What is the best way to forward sysmon logs to ELK Stack

Current practice is to forward all sysmon logs to syslog.

How should i forward these logs from syslog server to ELK stack ?

We dont want to install winlogbeats on every system.

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.