Local config files for splunk Windows Add-On
Download Winlogbeat: https://www.elastic.co/downloads/beats/winlogbeat
Make sure you use logstash output with compression level set to 0: https://www.elastic.co/guide/en/beats/winlogbeat/current/logstash-output.html#_compression_level_2