I had Netwrix Auditor installed as a trial-ware.
Once trial-ware was removed, I installed Netwrix Event Log Manager freeware to monitor few workstations.
I am in process of configuring based on admin guide but unable to save any custom filters under Audit archiving filers as well as under Real-time alerts.
I am using domain admin account which has full permission to local archiving folder.
GPO is configured based on suggestion.
I am using Windows 7 SP1 64-bit system.
I am not sure what I am missing to start collecting data from local host as well as remote hosts within network.