EEC can subscribe to WEF Windows Event Forwarding protocol and act as a WEC Windows Event Collector directly from Linux. With subscription EEC receives all or filtered events and passes it to its output.
Configure Your WEC subscription on Linux with Energy Event Collector
Generate certificates for secure communication
Setup subscription on Windows to enable Windows Event Forwarding
Start Energy Event Collector on Linux
Sign in for a newsletter.
EEC can subscribe to WEF Windows Event Forwarding protocol and act as a WEC Windows Event Collector directly from Linux. With subscription EEC receives all or filtered events and passes it to its output.
EEC is a linux software controlled with a configuration files, certificates for encryption and operating system management scripts.
Data is sent through syslog so you can send it wherever you want as long as receiver is supporting data input with syslog. Most of the systems support that, like Energy Logserver, Splunk, Elastic Stack, ITRS Log Analytics, Datadog and many others.
EEC is a standalone software which is easy to integrate with SIEM platforms like Energy Logserver, Splunk, ITRS Log Analytics, ELK Stack. Our documentation covers integrations part for major platforms. Event data can be shipped with syslog or using flat files.
EEC is licensed per collector instance. No matter of number of sources. No matter of volume. No performance limit. License is generate for individual collector and cannot be migrated from host to host.
EEC is not limited with performance. We take best from Your hardware. However following Technet documentation for WEC standard single WEC subscription can receive approx. 10k events per second.
Feel free to contact us for more information or idea for your own project!