I have downloaded and setup eventlog analyzer. We are evaluating it before purchase.
It's minimum log polling interval is 10 minute. I wonder what happens between log pollings. My questions are:
1- Does the agent collect windows event logs as soon as any event created and cache then send at end of interval?
2- Or does the agent get logs at the end of interval and send?
3- How is it guarantied that thereis no log loss happens in case server shutdown or network failure during log collecting interval? If the programme has this ability?
Regards