Work with Collected Data
To search for collected data:
Step 1 – Start the Auditor client and navigate to Search.
Step 2 – Click Search.
NOTE: You might want to apply a filter to narrow down your search results to the Netwrix API data source only.
Expand List of Gathered Events
Based on the activity you get, you may want to adjust the processing rules, add other relevant events, etc. To do that, copy the file with processing rules, edit it, and then restart the service.