Hello,
I'm using the Elastic Stack version 7.8.0 ( Winlogbeat -> Elasticsearch pipeline) in Windows 10 Operating System .
Issue : Winlogbeat not capturing all the events generated in Windows Machine. For eg: (Audit trial logs cleared, Failed Login attempts etc. ) events are not getting indexed to Elasticsearch.
But I can see few other event data indexed to Elasticsearch.
Please help me, whether I'm missing any additional configuration required to capture those events.
Thanks in Advance.