Skip to content
Discussion options

You must be logged in to vote

I ended up figuring this out. This is key before you get all of the stuff you need from AD.

https://techcommunity.microsoft.com/t5/windows-server-for-it-pro/active-directory-hunting-set-up-advanced-monitoring-with-sysmon/m-p/3977120

Once we did that we can see it all now in kibana.

Replies: 1 comment

Comment options

You must be logged in to vote
0 replies
Answer selected by cm-ops
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
1 participant