OS: Windows XP VM on ESX.
V. 3.1.3 of Snare Agent for Windows.
XP systems are set to GMT and no DST.
Currently the Snare service is timestamping events to be sent 1 hour ahead of actual system time.
If we change system to a Standard time (i.e., Dec), then the timestamps are correct in mathing the system.
We cannot find any configuration setting or reference to this issue, nor does the registry present anything obvious.
Thank you.
Hi,
Just to confirm, your machines are set to GMT and you have unticked the option of automatically adjusting for DST (that is, you are not using UTC)? Does the timestamp on the events sent by the Snare agent match the time of the events in the Event Log?
Regards, David.