Hi all,
First post here - please be gentle!
I have installed Filebeat on my (Windows 2016) SEPM server, which is working well (pulling from .tmp files in data/dump). My next job is to put together a SEPM-specific Filebeat module to detect/filter/identify fields within the log files so that we can do more useful indexing in Elasticsearch (and reporting in Kibana).
Before I do, though, I thought I'd ask whether anyone has already put one together? It would save me a lot of thinking time if so. If not, I'll see what I can do and could probably share it here if anyone else would find it useful.
Thanks.