Conversion of the Event log int a WDAC Policy XML file was unsuccessful #381
Unanswered
Ross-Curley
asked this question in
Q&A
Replies: 3 comments 4 replies
-
Hi @Ross-Curley, can you please share the evtx file with me so I can verify the issue? Thanks |
Beta Was this translation helpful? Give feedback.
0 replies
-
ForwardedEvents.zip |
Beta Was this translation helpful? Give feedback.
0 replies
-
Thank you. I am going to create a bug for this case. I don't see any reason why these events should not parse. |
Beta Was this translation helpful? Give feedback.
4 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
I've Deployed WDAC in Audit mode and have started collecting logs with windows event forwarding. When I try to parse the .evtx I get a none specific error can anyone tell me what could be the issue?
Beta Was this translation helpful? Give feedback.
All reactions