2021-11-03 05:18 AM - edited 2021-11-03 05:19 AM
We've found that the Windows Parser doesn't correctly pick up the following bug with event ID 4756
According to an article from Splunk in event id 4756 'Account Name' is used instead of 'Group Name' across all other IDs.
The Windows Parser doesn't seem to pick up on this error in the windows log.
Is there any chance that it could be corrected.
2021-11-13 12:20 AM
Hi Jeremy,
I'll update this post as well as the Support case when I have an update from Content team. Thanks.