I am looking to use the Sophos Log Writer and Splunk to alert our support teams to machines that are not “up to date” so they can be investigated.
I know how to edit the SophosLogWriterConfig.xml to call different data sources, but can’’’’t see a .config file that contains the “Up to Date” or “Last Message Received” information.
Is this possible with the Log Writer? I can see references to a ComputerControl.config file in other community posts, but I don’’’’t seem to have this.
Ultimately, we just want to identify any machines that may have a client issue, so happy to use another field if there is something more appropriate?
Thanks for any advice!
This thread was automatically locked due to age.