Browse Source

Used asterisk for Defender Firewall log name (#2671)

Log name is configurable. MD Docs recommend a log file per profile: https://learn.microsoft.com/en-us/windows/security/operating-system-security/network-security/windows-firewall/configure-logging?tabs=intune
Zafer Balkan 1 năm trước cách đây
mục cha
commit
e1932ff01e
1 tập tin đã thay đổi với 2 bổ sung2 xóa
  1. 2 2
      config/acquis_win.yaml

+ 2 - 2
config/acquis_win.yaml

@@ -10,7 +10,7 @@ labels:
 ---
 ---
 ##Firewall
 ##Firewall
 filenames:
 filenames:
-  - C:\Windows\System32\LogFiles\Firewall\pfirewall.log
+  - C:\Windows\System32\LogFiles\Firewall\*.log
 labels:
 labels:
   type: windows-firewall
   type: windows-firewall
 ---
 ---
@@ -28,4 +28,4 @@ use_time_machine: true
 filenames:
 filenames:
   - C:\inetpub\logs\LogFiles\*\*.log
   - C:\inetpub\logs\LogFiles\*\*.log
 labels:
 labels:
-  type: iis
+  type: iis