I'm trying to get bitlocker events into Splunk. Below is what I have in the inputs.conf and it appears to not be working.
[WinEventLog://Microsoft-Windows-BitLocker/BitLocker Management] index = main disabled = 0