I have the Windows Infrastructure app installed on a Windows machine. The monitor stanza and the powershell scripts are working fine, but the Winevent logs with the following config are not indexing any data.
# Application and Services Logs - Directory Service
# Application and Services Logs - File Replication Service
[WinEventLog:File Replication Service]
sourcetype="WinEventLog:File Replication Service"
If it's installed on the local machine, is that local machine a Domain Controller?
You do have a "winevents" index on the indexer this gets sent to, right? If not, create that. I believe I had a problem where that app didn't create one of the indexes, though I don't recall which one. This could be your problem.