> For the complete documentation index, see [llms.txt](https://docs.apica.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.apica.io/integrations/list-of-integrations/ossec-variants-ossec-wazuh-atomic/ascent-ossec-agent-for-windows.md).

# Apica Ascent-OSSEC Agent for Windows

We have [discussed earlier](/integrations/list-of-integrations/ossec-variants-ossec-wazuh-atomic.md) how to make a ossec`-hids` App Extension.

After creating a App Extension you can copy the **LoadBalancer-IP** and **authtoken** from the `Explore > App Extension` page.\\

After this, you are ready to connect the Apica-OSSEC Agent to the Apica-OSSEC Manager.\
\
Please download this powershell script file and run it from the source machine with 2 parameters.

Required Parameters:

* LOGIQ\_OSSEC\_MANAGER
* LOGIQ\_OSSEC\_PASSWORD

You can find these 2 values in `Explore > App Extensions > ossec-hids`.

**LOGIQ\_OSSEC\_MANAGER** is the **LoadBalancer-IP**.

**LOGIQ\_OSSEC\_PASSWORD** is the **authtoken**.

<figure><img src="/files/3yNNS1hvvl1JoVxeUuPr" alt=""><figcaption><p>LoadBalancer-IP and authtoken fields in App Extensions page</p></figcaption></figure>

{% file src="/files/djGGvv2xUSDuttdSFcBD" %}

You can run this powershell script like this.

> NOTE: Please replace the LoadBalancer-IP, and authtoken in the below command.

```
 .\logiq-ossec-installer.ps1 -LOGIQ_OSSEC_MANAGER "<Loadbalancer-IP>" -LOGIQ_OSSEC_PASSWORD "<authtoken>"
```

This script will run for approximately 20 seconds, you will be able to see that the Security events will be coming in the `Dashboard > Security Monitoring - Overview.`
