<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Integrate MSSQL standard edition with Splunk in Security</title>
    <link>https://community.splunk.com/t5/Security/Integrate-MSSQL-standard-edition-with-Splunk/m-p/711088#M18346</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/244855"&gt;@Nawab&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;you should use the sourcetypes used in the add-on.&lt;/P&gt;&lt;P&gt;Add-on should be installed in the Forwarder used to ingest data and on the Search Heads, used for search tipe parsing activities.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;&lt;P&gt;P.S.: Karma Points are appreciated by all the contributors &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 10 Feb 2025 07:24:51 GMT</pubDate>
    <dc:creator>gcusello</dc:creator>
    <dc:date>2025-02-10T07:24:51Z</dc:date>
    <item>
      <title>Integrate MSSQL standard edition with Splunk</title>
      <link>https://community.splunk.com/t5/Security/Integrate-MSSQL-standard-edition-with-Splunk/m-p/709936#M18297</link>
      <description>&lt;P&gt;We need to integrate MSSQL standard edition with splunk, so we tried sending logs to Windows Event Viewer application channel. Now we are getting logs, but the issue is logs are not parsed and we are getting all logs.&lt;/P&gt;&lt;P&gt;My question is if someone has integrated MSSQL standard edition with splunk. how you did it and is data parsed&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jan 2025 11:01:14 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Integrate-MSSQL-standard-edition-with-Splunk/m-p/709936#M18297</guid>
      <dc:creator>Nawab</dc:creator>
      <dc:date>2025-01-28T11:01:14Z</dc:date>
    </item>
    <item>
      <title>Re: Integrate MSSQL standard edition with Splunk</title>
      <link>https://community.splunk.com/t5/Security/Integrate-MSSQL-standard-edition-with-Splunk/m-p/709937#M18298</link>
      <description>&lt;P&gt;The MSSQL Add-On has installation and configuration docs. Did you read them?&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/AddOns/released/MSSQLServer/About" target="_blank"&gt;https://docs.splunk.com/Documentation/AddOns/released/MSSQLServer/About&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jan 2025 11:06:11 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Integrate-MSSQL-standard-edition-with-Splunk/m-p/709937#M18298</guid>
      <dc:creator>PickleRick</dc:creator>
      <dc:date>2025-01-28T11:06:11Z</dc:date>
    </item>
    <item>
      <title>Re: Integrate MSSQL standard edition with Splunk</title>
      <link>https://community.splunk.com/t5/Security/Integrate-MSSQL-standard-edition-with-Splunk/m-p/709940#M18299</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/244855"&gt;@Nawab&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;did you installed the SQL-Server Add-On&amp;nbsp;&lt;A href="https://splunkbase.splunk.com/app/2648" target="_blank"&gt;https://splunkbase.splunk.com/app/2648&lt;/A&gt;&amp;nbsp;on the Search Heads and on the Indexers or (if present) on the Heavy Forwarders?&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jan 2025 11:41:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Integrate-MSSQL-standard-edition-with-Splunk/m-p/709940#M18299</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2025-01-28T11:41:54Z</dc:date>
    </item>
    <item>
      <title>Re: Integrate MSSQL standard edition with Splunk</title>
      <link>https://community.splunk.com/t5/Security/Integrate-MSSQL-standard-edition-with-Splunk/m-p/709941#M18300</link>
      <description>&lt;P&gt;No i didnt because there is no sourcetype or input if logs are coming in application channel&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jan 2025 11:45:29 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Integrate-MSSQL-standard-edition-with-Splunk/m-p/709941#M18300</guid>
      <dc:creator>Nawab</dc:creator>
      <dc:date>2025-01-28T11:45:29Z</dc:date>
    </item>
    <item>
      <title>Re: Integrate MSSQL standard edition with Splunk</title>
      <link>https://community.splunk.com/t5/Security/Integrate-MSSQL-standard-edition-with-Splunk/m-p/709943#M18301</link>
      <description>&lt;P&gt;Well, the Add-On for MSSQL is the supported way of getting audit data from MSSQL databases. If you want to do it another way, you're pretty much on your own.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jan 2025 12:21:34 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Integrate-MSSQL-standard-edition-with-Splunk/m-p/709943#M18301</guid>
      <dc:creator>PickleRick</dc:creator>
      <dc:date>2025-01-28T12:21:34Z</dc:date>
    </item>
    <item>
      <title>Re: Integrate MSSQL standard edition with Splunk</title>
      <link>https://community.splunk.com/t5/Security/Integrate-MSSQL-standard-edition-with-Splunk/m-p/711088#M18346</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/244855"&gt;@Nawab&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;you should use the sourcetypes used in the add-on.&lt;/P&gt;&lt;P&gt;Add-on should be installed in the Forwarder used to ingest data and on the Search Heads, used for search tipe parsing activities.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;&lt;P&gt;P.S.: Karma Points are appreciated by all the contributors &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 10 Feb 2025 07:24:51 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/Integrate-MSSQL-standard-edition-with-Splunk/m-p/711088#M18346</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2025-02-10T07:24:51Z</dc:date>
    </item>
  </channel>
</rss>

