Skip to content
  • LinkedIn
  • Github
  • Twitter
  • Home
  • About me
  • Contact

Azure, Windows, Powershell, PKI, Security and more…

Tag: Eventlog

Written by LukeOctober 31, 2018May 17, 2019

How to backup/export an event log to an evtx file with PowerShell

A simple method with a oneliner bonus.

Written by LukeJanuary 19, 2018January 29, 2019

“New” audit Logon/Logoff and other event IDs

When you are searching Logon or Logoff event ID numbers, you may find a lot of old sites talking about ID 528 and ID 538. However, since Windows 7 and Windows Server 2008 R2, these event IDs don’t apply anymore and are completely useless for those more recent operating systems. The Advanced Security Audit Policy […]

Written by LukeDecember 12, 2017December 12, 2017

[Solved] Get-WinEvent returns messages with three dots

When you display log entries with Get-WinEvent, you may see some empty lines with only three dots. This happens because the first line of the message is empty, and Windows wants to show that there is more data after this empty line. To see the whole message, pipe your events to the Format-List cmdlet.

Create a website or blog at WordPress.com
  • Subscribe Subscribed
    • itluke.online
    • Join 38 other subscribers
    • Already have a WordPress.com account? Log in now.
    • itluke.online
    • Subscribe Subscribed
    • Sign up
    • Log in
    • Report this content
    • View site in Reader
    • Manage subscriptions
    • Collapse this bar