/usr/share/logwatch/default.conf/services/windows.conf is in logwatch 7.4.1-2.
This file is owned by root:root, with mode 0o644.
The actual contents of the file can be viewed below.
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 | ##########################################################################
# $Id: windows.conf 149 2013-06-18 22:18:12Z mtremaine $
##########################################################################
##########################################################################
# This was written and is maintained by:
# William Roumier <w.roumier@hotmail.fr>
#
# Please send all comments, suggestions, bug reports,
# etc, to logwatch-devel@lists.sourceforge.net
##########################################################################
# This service analyzes the syslog entries for Windows
# systems. It requires an utility to extract information
# from the Windows eventlog, and forward it to a UNIX syslog
# server.
##########################################################################
# You can put comments anywhere you want to. They are effective for the
# rest of the line.
# this is in the format of <name> = <value>. Whitespace at the beginning
# and end of the lines is removed. Whitespace before and after the = sign
# is removed. Everything is case *insensitive*.
# Yes = True = On = 1
# No = False = Off = 0
Title = "windows"
# Which logfile group...
LogFile = windows
|