For anyone interested, here is how to view the above with PowerShell
Get-ItemPropertyValue -Path
hklm:\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL -Name
EventLogging #enable logging Set-ItemProperty -Path
hklm:\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL -Name
EventLo...
Yes. So the key would be to use the AMA agent (With the Azure ARC agent
it now uses this) and filter on those events you want and hopefully
prevent duplicating data.
Latest Comments