<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Import log file? in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187516#M18940</link>
    <description>&lt;P&gt;I think i fixed it&lt;BR /&gt;
I added a syslog event (6) at the end of the "prepare gwaccess3.log" step.&lt;BR /&gt;
Looks to be working.&lt;/P&gt;

&lt;P&gt;Thanks for your help!&lt;/P&gt;</description>
    <pubDate>Fri, 06 Jun 2014 00:59:57 GMT</pubDate>
    <dc:creator>pcsaeed</dc:creator>
    <dc:date>2014-06-06T00:59:57Z</dc:date>
    <item>
      <title>Import log file?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187512#M18936</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;

&lt;P&gt;Can someone explain how i "Import MWGaccess3_for_MWG7.3-7.4.xml in MWG7 into the Default Log Handler - it will create a new log file with the required fields." because i'm clearly missing something simple?&lt;/P&gt;

&lt;P&gt;Thanks in advance.&lt;/P&gt;

&lt;P&gt;Saeed&lt;/P&gt;</description>
      <pubDate>Mon, 28 Sep 2020 16:47:09 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187512#M18936</guid>
      <dc:creator>pcsaeed</dc:creator>
      <dc:date>2020-09-28T16:47:09Z</dc:date>
    </item>
    <item>
      <title>Re: Import log file?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187513#M18937</link>
      <description>&lt;P&gt;Hello Saeed,&lt;/P&gt;

&lt;P&gt;this App requires an access log file which is different from the default one. Instead of modifying the existing access.log we simply import a xml file which creates an another log for you and leaves your access.log untouched.&lt;/P&gt;

&lt;P&gt;So log in on your MWG, create a configuration backup, then go to Policies &amp;gt; Rule Sets &amp;gt; Log Handler, right click on the "Default" &amp;gt; Add &amp;gt; Rule Set from Library. A new windows will appear where you click the button "Import from file", choose the xml file, click "Auto-Solve Conflicts..." &amp;gt; choose "Solve by referring to existing objects" and click OK and "Save Changes".&lt;/P&gt;

&lt;P&gt;Screenshots:&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;   &lt;A href="https://community.splunk.com/www.compek.net/Import_Rule_Set_from_Library.png" target="test_blank"&gt;www.compek.net/Import_Rule_Set_from_Library.png&lt;/A&gt;
   &lt;A href="https://community.splunk.com/www.compek.net/Import_Rule_Set_from_Library2.png" target="test_blank"&gt;www.compek.net/Import_Rule_Set_from_Library2.png&lt;/A&gt;
   &lt;A href="https://community.splunk.com/www.compek.net/Import_Rule_Set_from_Library3.png" target="test_blank"&gt;www.compek.net/Import_Rule_Set_from_Library3.png&lt;/A&gt;
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;Additionally you can modify your setup as described in the documentation ("Adjust the app for your environment"). &lt;/P&gt;

&lt;P&gt;Let me know if you have further questions.&lt;/P&gt;

&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Wed, 04 Jun 2014 20:27:58 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187513#M18937</guid>
      <dc:creator>PavelP</dc:creator>
      <dc:date>2014-06-04T20:27:58Z</dc:date>
    </item>
    <item>
      <title>Re: Import log file?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187514#M18938</link>
      <description>&lt;P&gt;Cool Thanks!&lt;/P&gt;

&lt;P&gt;Just one other question and I'm sure this is simple and I just can't find it.&lt;BR /&gt;
I've setup the Web Gateway to send syslog to my splunk server. I've setup UDP to to listen for the MWGaccess3 source type. &lt;BR /&gt;
What i'm not sure about is how to view the data using the app?&lt;BR /&gt;
Sorry for the dumb questions. Your help is greatly appreciated.&lt;/P&gt;

&lt;P&gt;Saeed&lt;/P&gt;</description>
      <pubDate>Thu, 05 Jun 2014 23:45:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187514#M18938</guid>
      <dc:creator>pcsaeed</dc:creator>
      <dc:date>2014-06-05T23:45:27Z</dc:date>
    </item>
    <item>
      <title>Re: Import log file?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187515#M18939</link>
      <description>&lt;P&gt;Cool Thanks!&lt;/P&gt;

&lt;P&gt;Just one other question and I'm sure this is simple and I just can't find it.&lt;BR /&gt;
I've setup the Web Gateway to send syslog to my splunk server. I've setup UDP to to listen for the MWGaccess3 source type. &lt;BR /&gt;
What i'm not sure about is how to view the data using the app?&lt;BR /&gt;
Sorry for the dumb questions. Your help is greatly appreciated.&lt;/P&gt;

&lt;P&gt;Saeed&lt;/P&gt;</description>
      <pubDate>Thu, 05 Jun 2014 23:46:00 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187515#M18939</guid>
      <dc:creator>pcsaeed</dc:creator>
      <dc:date>2014-06-05T23:46:00Z</dc:date>
    </item>
    <item>
      <title>Re: Import log file?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187516#M18940</link>
      <description>&lt;P&gt;I think i fixed it&lt;BR /&gt;
I added a syslog event (6) at the end of the "prepare gwaccess3.log" step.&lt;BR /&gt;
Looks to be working.&lt;/P&gt;

&lt;P&gt;Thanks for your help!&lt;/P&gt;</description>
      <pubDate>Fri, 06 Jun 2014 00:59:57 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187516#M18940</guid>
      <dc:creator>pcsaeed</dc:creator>
      <dc:date>2014-06-06T00:59:57Z</dc:date>
    </item>
    <item>
      <title>Re: Import log file?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187517#M18941</link>
      <description>&lt;P&gt;Hello Saeed, all right! I'll add a predefined syslog rule and a description in the new version.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Jun 2014 12:11:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187517#M18941</guid>
      <dc:creator>PavelP</dc:creator>
      <dc:date>2014-06-06T12:11:45Z</dc:date>
    </item>
    <item>
      <title>Re: Import log file?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187518#M18942</link>
      <description>&lt;P&gt;Thank you for this PaveIP&lt;/P&gt;</description>
      <pubDate>Thu, 11 Feb 2016 15:52:01 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187518#M18942</guid>
      <dc:creator>trross33</dc:creator>
      <dc:date>2016-02-11T15:52:01Z</dc:date>
    </item>
    <item>
      <title>Re: Import log file?</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187519#M18943</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;

&lt;P&gt;old post, but I still got a question:&lt;BR /&gt;
So the .xml -File must be imported in the MWG, NOT in the Splunk MWG AddOn? Am I right with that?&lt;/P&gt;</description>
      <pubDate>Fri, 03 Aug 2018 10:08:31 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Import-log-file/m-p/187519#M18943</guid>
      <dc:creator>jbrocks</dc:creator>
      <dc:date>2018-08-03T10:08:31Z</dc:date>
    </item>
  </channel>
</rss>

