浏览代码

Used asterisk for Defender Firewall log name (#2671)

Log name is configurable. MD Docs recommend a log file per profile: https://learn.microsoft.com/en-us/windows/security/operating-system-security/network-security/windows-firewall/configure-logging?tabs=intune
Zafer Balkan 1 年之前
父节点
当前提交
e1932ff01e
共有 1 个文件被更改,包括 2 次插入2 次删除
  1. 2 2
      config/acquis_win.yaml

+ 2 - 2
config/acquis_win.yaml

@@ -10,7 +10,7 @@ labels:
 ---
 ##Firewall
 filenames:
-  - C:\Windows\System32\LogFiles\Firewall\pfirewall.log
+  - C:\Windows\System32\LogFiles\Firewall\*.log
 labels:
   type: windows-firewall
 ---
@@ -28,4 +28,4 @@ use_time_machine: true
 filenames:
   - C:\inetpub\logs\LogFiles\*\*.log
 labels:
-  type: iis
+  type: iis