<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Lot of event codes are missing in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Lot-of-event-codes-are-missing/m-p/489189#M60210</link>
    <description>&lt;P&gt;I just downloaded the newest Splunk App for Windows Infrastructure (Version 2.0.0) and counted 251 Eventcodes in the range [4000,5000]&lt;/P&gt;

&lt;P&gt;I compared them with &lt;A href="https://www.ultimatewindowssecurity.com/securitylog/encyclopedia/default.aspx?i=j"&gt;https://www.ultimatewindowssecurity.com&lt;/A&gt; which is a good starting point if you are looking for some infos regarding the Event Codes and found 255 Eventcodes in the range [4000,5000]&lt;/P&gt;

&lt;P&gt;Which Eventcodes you are missing?&lt;/P&gt;</description>
    <pubDate>Mon, 20 Jan 2020 13:44:16 GMT</pubDate>
    <dc:creator>damann</dc:creator>
    <dc:date>2020-01-20T13:44:16Z</dc:date>
    <item>
      <title>Lot of event codes are missing</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Lot-of-event-codes-are-missing/m-p/489188#M60209</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;

&lt;P&gt;It seems that there's a lot of missing eventcodes in the EventCodes.csv lookup file, even in the last version of the app.&lt;BR /&gt;
For instance, Event code between 4000 to 5000.&lt;BR /&gt;
Why this file is not updated by Splunk and is there way to have to have an exhaustive file for our customers production environment ?&lt;/P&gt;

&lt;P&gt;thanks for your help,&lt;/P&gt;</description>
      <pubDate>Mon, 20 Jan 2020 10:54:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Lot-of-event-codes-are-missing/m-p/489188#M60209</guid>
      <dc:creator>julienlance</dc:creator>
      <dc:date>2020-01-20T10:54:05Z</dc:date>
    </item>
    <item>
      <title>Re: Lot of event codes are missing</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Lot-of-event-codes-are-missing/m-p/489189#M60210</link>
      <description>&lt;P&gt;I just downloaded the newest Splunk App for Windows Infrastructure (Version 2.0.0) and counted 251 Eventcodes in the range [4000,5000]&lt;/P&gt;

&lt;P&gt;I compared them with &lt;A href="https://www.ultimatewindowssecurity.com/securitylog/encyclopedia/default.aspx?i=j"&gt;https://www.ultimatewindowssecurity.com&lt;/A&gt; which is a good starting point if you are looking for some infos regarding the Event Codes and found 255 Eventcodes in the range [4000,5000]&lt;/P&gt;

&lt;P&gt;Which Eventcodes you are missing?&lt;/P&gt;</description>
      <pubDate>Mon, 20 Jan 2020 13:44:16 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Lot-of-event-codes-are-missing/m-p/489189#M60210</guid>
      <dc:creator>damann</dc:creator>
      <dc:date>2020-01-20T13:44:16Z</dc:date>
    </item>
    <item>
      <title>Re: Lot of event codes are missing</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Lot-of-event-codes-are-missing/m-p/489190#M60211</link>
      <description>&lt;P&gt;Hello Damann,&lt;/P&gt;

&lt;P&gt;Thanks for your time.&lt;/P&gt;

&lt;P&gt;For instance, in the last 24 hours :&lt;BR /&gt;
4001,4013,4015,4016,4521&lt;/P&gt;

&lt;P&gt;Others  missing codes in another ranges :&lt;BR /&gt;
134,404,407,408,2004,5774,5775,5781,6523,6527,6534,7050,7600,7681&lt;/P&gt;

&lt;P&gt;Thanks !&lt;/P&gt;</description>
      <pubDate>Mon, 20 Jan 2020 14:09:59 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Lot-of-event-codes-are-missing/m-p/489190#M60211</guid>
      <dc:creator>julienlance</dc:creator>
      <dc:date>2020-01-20T14:09:59Z</dc:date>
    </item>
  </channel>
</rss>

