$ 0 0 Hello how do i filter events (windows event log) on forwarder ? btw how do i install heavy forwarder? i have splunk 6.2.3 tnx in advance