hi allI tried to install Sysmon on a Windows Server 2008 SP2, and gotten the following error message.
any advise ? Does Sysmon support Windows Server 2008 ?
Attachments: Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.
I vaguely remember a new feature around sysmon version 11 or 12 which resulted in inability to run on 2008. The oldest stable version version of sysmon I can think of is 10.42. I presume you are building a honeypot if choosing to run a 2008 version of server. :)
3 people are following this question.
Installing Sysmon application using SCCM
Sysmon - not logging "Pipe created" events (Event 17)
Sysmon 12.03 - FileDelete rules on Win2008 R2 cause Sysmon to crash
Inquiry about nesting Sysmon rule groups