Collect Windows DHCP and DNS Logs with Event Trace
Example configuration steps for capturing Windows DHCP and DNS logs using the Windows Event Trace (ETW) source.
Prerequisites
Steps
wevtutil set-log "Microsoft-Windows-DNSServer/Audit" /e:true wevtutil sl "Microsoft-Windows-DNSServer/Audit" /ca:"O:BAG:BAD:(A;;0x1;;;SY)"
Microsoft-Windows-DHCP-ServerMicrosoft-Windows-DNSServer
Troubleshooting
Was this helpful?