Hi,
We have a need to exclude unwanted events from indexing. The problem is the majority of them are windows file access events which we need to monitor.
What i need to know is if we can exclude eventlogs from indexing based on a process ID or the application running them.
The backup is causing lots of unnecessary events that need excluding.