SWA is a service which will send the Windows Event Log to a syslog server.
When a new log is written to the Windows event log, the application checks whether the log is defined in the rules file. If so, the application sends the log to the syslog server configured in the configuration file.