EVENTREPORTER FEATURES
Powerful Windows Event Log Collection and Forwarding
Collect, filter, process, forward and store Windows Event Log data with a flexible rule-based engine built for continuous operation on Microsoft Windows.
Collection · Filtering · Forwarding · Storage · Automation · Administration
Everything You Need to Move Windows Events
EventReporter turns distributed Windows events into controlled, centralized logging workflows.
🪟 Windows Event Collection
Continuously collect standard and custom Windows Event Logs.
🎯 Rule-Based Filtering
Select important events and reduce noise before transmission.
🔒 Secure Forwarding
Send selected events to syslog, SIEM and web endpoints.
💾 File and Database Storage
Retain relevant events in files or structured databases.
⚡ Alerts and Automation
Notify administrators or trigger automated responses.
⚙️ Reliable Administration
Configure, deploy and troubleshoot EventReporter efficiently.
🪟
Collect Windows Event Logs Reliably
EventReporter continuously monitors Windows Event Logs and passes new events to its rule engine for further processing.
Local Event Log Monitoring
Collect events from the Windows system on which EventReporter is installed.
PROFESSIONAL
Remote Event Log Monitoring
Monitor Event Logs on other Windows systems from a central installation.
Standard and Custom Logs
Collect standard Windows logs as well as application-specific and custom Event Logs.
Heartbeat and Log Clearing
Generate periodic activity messages and optionally clear monitored logs after processing.
Keep Relevant Events and Reduce Noise
Process events close to their source and forward only the data required by your operational, security and retention workflows.
Rule-Based Processing
Route collected events through configurable rulesets containing filters and one or more actions.
Flexible Conditions
Filter by Event ID, provider, log, severity, computer, message content, date, time and properties.
Combined Logic and Regex
Combine conditions with Boolean logic and use regular expressions for precise matching.
Modify Event Properties
Change, normalize or add properties before an event is forwarded, stored or evaluated by another rule.
Discard Unwanted Events
Stop routine or irrelevant events before they consume bandwidth or downstream storage.
Forward Events to the Systems You Already Use
Connect Windows Event Logs with syslog servers, SIEM platforms, REST APIs, OpenSearch and operational notification channels.
Syslog Forwarding
Convert Windows events to syslog, map severity and facility, customize formats and send to multiple destinations.
PROFESSIONAL
Modern Syslog Standards
Use RFC 5424 message formatting and RFC 5425 forwarding over TLS.
PROFESSIONAL
SETP Forwarding
Use Adiscon’s reliable SETP protocol with compatible logging environments.
MODERN INTEGRATION
HTTP REST Output
Send matching events as structured HTTP or HTTPS requests to REST APIs, webhooks or OpenSearch. Configure methods, headers, JSON templates, TLS settings and OpenSearch bulk indexing.
Email and Multiple Destinations
Send notifications and process one event with several delivery or storage actions.
Store Windows Events Where You Need Them
Retain selected Windows events in formats and locations that match your operational requirements.
📄 File Logging
- Configurable output formats
- Dynamic file names
- Rotation and compression
- Local and UNC paths
🗄️ Database Logging
- ODBC and OLE DB connections
- Structured event retention
- Custom database schemas
- Property-to-column mapping
Note: EventReporter collects, processes and stores event data. Dashboards and interactive analysis are typically provided by a downstream SIEM, database application or log analysis platform.
React Automatically to Important Events
Turn matching events into notifications, external calls and modular processing workflows.
✉️ Email Alerts
Notify administrators when defined events or patterns occur.
▶️ Start Programs
Run a program or script in response to a matching Windows event.
🌐 HTTP Calls
Call webhooks, APIs and other automation endpoints.
🔁 Call Rulesets
Pass events into additional rulesets for modular processing.
🏷️ Set Status and Properties
Record results or prepare event data for later rules and actions.
⏹️ Discard
End processing deliberately when no additional action is required.
Configure Once and Operate Reliably
Run EventReporter continuously, manage configurations efficiently and use diagnostic information when troubleshooting is required.
Native Windows Service
Process events continuously without an interactively logged-in user.
Graphical Configuration Client
Manage services, rulesets, filters and actions through a dedicated interface.
Remote Administration
Connect the configuration client to another EventReporter installation.
Configuration Export and Import
Back up configurations or copy tested settings to additional systems.
Debugging and Product Event IDs
Generate diagnostic logs and use documented product events to investigate operational issues.
PROFESSIONAL
Repeatable Deployment
Create and test a reference configuration, export it and distribute the software and settings through your established deployment tooling.
- Group Policy
- Microsoft Configuration Manager
- PowerShell or other deployment tools
Feature Availability
EventReporter Basic includes core collection, filtering, storage and standard forwarding. Professional adds remote Event Log monitoring, advanced and secure forwarding protocols, SETP and repeatable deployment capabilities.
Need Configuration Details?
Continue with task-oriented tutorials or browse the complete configuration reference.
📘 Documentation
🧭 Tutorials
⚖️ Edition Comparison
Explore EventReporter in Your Own Environment
Download the full-featured trial and test collection, filtering and forwarding with your own Windows Event Logs.
