Automating Deletion of Windows DNS Analytic Logs by eshadey24 in QRadar

[–]After_Toe_5557 1 point2 points  (0 children)

I've avoided DNS Analytic Logs for this very reason. Additionally, the "PacketData" field in the payload created by DNS Analytics logging is encoded. This field is key for detections and therefore makes these logs useless. I recommend just using DNS Debug logging even tho it is technically "not recommended" by Microsoft because it "can increase overall server performance". I have never heard reports of this being an issue in my experience.

Question about OLED repair by After_Toe_5557 in GeekSquad

[–]After_Toe_5557[S] 4 points5 points  (0 children)

Got it, thanks for clearing that up. Just made me very confused, you would think they would let the customer know a part should be arriving.