<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic how do i monitor my own system ? in Security</title>
    <link>https://community.splunk.com/t5/Security/how-do-i-monitor-my-own-system/m-p/569245#M15635</link>
    <description>&lt;P&gt;So I am very new to Splunk and I have just started using it. What I want to do is be able to view my own laptops operating system file logs and performance data. What I have been doing is logging onto my splunk and then selecting the "add data" button. From there I select the "monitor" button. For example I have chosen to monitor&amp;nbsp; my local events log but for some reason when I try to search anything I get nothing so something is wrong and I dont know what.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please help&lt;/P&gt;</description>
    <pubDate>Thu, 30 Sep 2021 23:46:45 GMT</pubDate>
    <dc:creator>rcon313</dc:creator>
    <dc:date>2021-09-30T23:46:45Z</dc:date>
    <item>
      <title>how do i monitor my own system ?</title>
      <link>https://community.splunk.com/t5/Security/how-do-i-monitor-my-own-system/m-p/569245#M15635</link>
      <description>&lt;P&gt;So I am very new to Splunk and I have just started using it. What I want to do is be able to view my own laptops operating system file logs and performance data. What I have been doing is logging onto my splunk and then selecting the "add data" button. From there I select the "monitor" button. For example I have chosen to monitor&amp;nbsp; my local events log but for some reason when I try to search anything I get nothing so something is wrong and I dont know what.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please help&lt;/P&gt;</description>
      <pubDate>Thu, 30 Sep 2021 23:46:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/how-do-i-monitor-my-own-system/m-p/569245#M15635</guid>
      <dc:creator>rcon313</dc:creator>
      <dc:date>2021-09-30T23:46:45Z</dc:date>
    </item>
    <item>
      <title>Re: how do i monitor my own system ?</title>
      <link>https://community.splunk.com/t5/Security/how-do-i-monitor-my-own-system/m-p/569272#M15636</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/239158"&gt;@rcon313&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;probably you need to have a training before to start to work on Splunk.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;You could&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;follow the Splunk Fundamentals I course (&lt;/SPAN&gt;&lt;A href="https://www.splunk.com/en_us/training/free-courses/splunk-fundamentals-1.html" target="_blank" rel="nofollow noopener noreferrer"&gt;https://www.splunk.com/en_us/training/free-courses/splunk-fundamentals-1.html&lt;/A&gt;&lt;SPAN&gt;) that's a free course and the Search Tutorial (&lt;/SPAN&gt;&lt;A href="https://docs.splunk.com/Documentation/Splunk/8.1.0/SearchTutorial/WelcometotheSearchTutorial" target="_blank" rel="nofollow noopener noreferrer"&gt;https://docs.splunk.com/Documentation/Splunk/8.1.0/SearchTutorial/WelcometotheSearchTutorial&lt;/A&gt;&lt;SPAN&gt;) that help you to understand how Splunk searches work.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;About the ingestion of windows logs, there's an interesting video in the download page of splunk that could help you to understand how Splunk ingests local logs.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Then these other videos on YouTube:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.youtube.com/watch?v=3GKhCZfQqDM" target="_blank"&gt;https://www.youtube.com/watch?v=3GKhCZfQqDM&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://www.youtube.com/watch?v=1AyJaKxks-I" target="_blank"&gt;https://www.youtube.com/watch?v=1AyJaKxks-I&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://www.youtube.com/watch?v=rT-O80XfWuY" target="_blank"&gt;https://www.youtube.com/watch?v=rT-O80XfWuY&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://www.youtube.com/watch?v=sLMIEjgD6UY" target="_blank"&gt;https://www.youtube.com/watch?v=sLMIEjgD6UY&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;maybe someone is late but this part is almost the same.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Ciao.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Giuseppe&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 01 Oct 2021 06:45:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/how-do-i-monitor-my-own-system/m-p/569272#M15636</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2021-10-01T06:45:12Z</dc:date>
    </item>
    <item>
      <title>Re: how do i monitor my own system ?</title>
      <link>https://community.splunk.com/t5/Security/how-do-i-monitor-my-own-system/m-p/569316#M15637</link>
      <description>&lt;P&gt;Hi Gcusello,&lt;/P&gt;&lt;P&gt;I finished the fundamentals part 1 course yesterday. It was a good course but it only really covered how to upload data into splunk. Maybe its a wee bit different for when you monitor your own system. I will have a look at the videos you sent me as well.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you very much&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 01 Oct 2021 11:37:22 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/how-do-i-monitor-my-own-system/m-p/569316#M15637</guid>
      <dc:creator>rcon313</dc:creator>
      <dc:date>2021-10-01T11:37:22Z</dc:date>
    </item>
    <item>
      <title>Re: how do i monitor my own system ?</title>
      <link>https://community.splunk.com/t5/Security/how-do-i-monitor-my-own-system/m-p/569341#M15639</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/239158"&gt;@rcon313&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;there are two videos that describe how to ingest Windows logs.&lt;/P&gt;&lt;P&gt;Anyway, I usually don't start from Add Data, but from Data Inputs, I Use Add-Data when I want to upload logs from a text or csv file.&lt;/P&gt;&lt;P&gt;So if you want to take the logs from the machine where Splunk is installed, you have to see in the menu choice [Settings -- Data Inputs] and choose the logs you want:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Local Eventlog Collection for Wineventlogs,&lt;/LI&gt;&lt;LI&gt;Files &amp;amp; Directories to read logs e.g. from IIS,&lt;/LI&gt;&lt;LI&gt;Local Performance Monitor to take the performance counters&lt;/LI&gt;&lt;LI&gt;and so on.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Please, let me know if my answer solved your need, in this case, please accept it for the other people of Community, otherwise, tell me how can I help you.&lt;/P&gt;&lt;P&gt;Ciao and happy splunking.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;&lt;P&gt;P.S.: Karma Points are appreciated &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 01 Oct 2021 14:04:03 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/how-do-i-monitor-my-own-system/m-p/569341#M15639</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2021-10-01T14:04:03Z</dc:date>
    </item>
  </channel>
</rss>

