Contents Menu Expand Light mode Dark mode Auto light/dark mode
rsyslog Windows Agent 8.1 documentation
rsyslog Windows Agent 8.1 documentation
  • Getting Started
    • Installation
    • System Requirements
    • Understand the Components
    • Collect and Forward Windows Events
    • Creating an Initial Configuration
    • Process and Filter
    • Store and Forward
    • Operate and Troubleshoot
  • Tutorials
    • Tutorial: Forward Windows Events to rsyslog
    • Tutorial: Forward Windows Events via TLS to rsyslog
    • Tutorial: Forward Windows Events via RELP to rsyslog
    • Tutorial: Export the Configuration and Create a Debug Log
  • Configuration
    • Core concepts
      • rsyslog Windows Agent Services
      • Information Units
      • Rules
      • The Rule Engine
      • rsyslog Windows Agent Filter Conditions
      • rsyslog Windows Agent Actions
    • Configure rsyslog Windows Agent
    • Multiple RuleSets - Rules - Actions
    • Client Options
    • Client Tools
    • Using File based configuration
    • General Options
      • License
      • General
      • Debug
      • Engine
      • Queue Manager
    • Services
      • Heartbeat
      • MonitorWare Echo Reply
      • Syslog server
      • Event Log Monitor V1
      • Event Log Monitor V2
      • File Monitor
    • Filter Conditions
      • Global Conditions
      • Date Conditions
      • Operators
      • Filters
        • REGEX Compare Operation
      • General
      • Date/Time
      • InformationUnit Type
      • Syslog
      • Event Log Monitor
      • Event Log Monitor V2
      • File Monitor
      • Custom Property
      • Extended Number Property
      • Extended IP Property
      • File Exists
      • Store Filter Results
    • Actions
      • Send RELP
      • Syslog Forwarding
      • Send DTLS
      • Call RuleSet
      • Compute Status Variable
      • Discard
      • Normalize Event
      • Set Property
      • Set Status
  • FAQ
    • Are rsyslog Windows Agent products affected by recent OpenSSL CVEs?
    • Troubleshooting the Start Program action in rsyslog
    • High-load configuration reload stalls in rsyslog Windows Agent
    • How to Export rsyslog Windows Agent Settings for a Support Call
    • How to resolve performance issues on high-load systems?
    • Is MariaDB supported by the ODBC action?
    • How Do I Prepare rsyslog Windows Agent for Mass Rollout?
    • How Can I Copy an rsyslog Windows Agent Configuration to Another System?
    • How Can I Obtain a Printable Version of the rsyslog Windows Agent Manual?
    • How Do I Enter rsyslog Windows Agent License Information?
  • Licensing and purchasing
    • How do I contact Adiscon sales?
    • What should I include in a quote request?
    • What happens after I open a sales ticket?
    • How do purchase orders and billing requests work?
    • Licensing and ordering
    • Air-gapped environments
    • Offline installation and activation
    • Online verification after activation
    • Perpetual licenses and UpgradeInsurance
    • UpgradeInsurance
  • Reference
    • rsyslog Windows Agent Shortcut Keys
    • Command Line Switches
    • Edition Comparison
    • Event Properties
      • Accessing Properties
        • Property
        • FromPos
        • ToPos
        • Options
        • Simple Examples
      • System Properties
      • Custom Properties
      • Event-Specific Properties
        • Standard Properties
        • Windows Event Log Properties
        • Windows Event Log V2 Properties
        • Syslog Message Properties
        • Disk Space Monitor
        • CPU/Memory Monitor
        • File Monitor
        • Windows Service Monitor
        • Ping Probe
        • Port Probe
        • Database Monitor
        • Serial Monitor
        • MonitorWare Echo Request
        • FTP Probe
        • IMAP Probe
        • NNTP Probe
        • SMTP Probe
        • POP3 Probe
        • HTTP Probe
    • Complex Filter Conditions
    • Connect to Computer
    • System Error Codes
    • Glossary
      • FTP
      • HTTP
      • IETF
      • IMAP
      • Information Units
      • IPv6
      • Millisecond
      • NNTP
      • POP3
      • RELP
      • Resource ID
      • RFC 3164
      • RFC 3195
      • RFC 5424
      • Rules
      • The Rule Engine
      • SETP
      • SMTP
      • SNMP
      • Syslog Facility
      • TCP
      • UDP
      • UTC
  • Copyrights
Back to top

Tutorials#

Use this section for concrete rsyslog Windows Agent tasks. Each tutorial is self-contained and focuses on one outcome.

  • Tutorial: Forward Windows Events to rsyslog
  • Tutorial: Forward Windows Events via TLS to rsyslog
  • Tutorial: Forward Windows Events via RELP to rsyslog
  • Tutorial: Export the Configuration and Create a Debug Log
Next
Tutorial: Forward Windows Events to rsyslog
Previous
Operate and Troubleshoot
Copyright © 2004-2026, Adiscon GmbH
Made with Sphinx and @pradyunsg's Furo