<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Enable Logging for IIS Fields in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Enable-Logging-for-IIS-Fields/m-p/651806#M110694</link>
    <description>&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/AddOns/released/MSIIS/Hardwareandsoftwarerequirements#Microsoft_IIS_setup_requirements" target="_blank"&gt;https://docs.splunk.com/Documentation/AddOns/released/MSIIS/Hardwareandsoftwarerequirements#Microsoft_IIS_setup_requirements&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 24 Jul 2023 21:36:36 GMT</pubDate>
    <dc:creator>PickleRick</dc:creator>
    <dc:date>2023-07-24T21:36:36Z</dc:date>
    <item>
      <title>Enable Logging for IIS Fields</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Enable-Logging-for-IIS-Fields/m-p/651804#M110693</link>
      <description>&lt;P&gt;Currently we have Microsoft IIS Web-Servers out in the environment, but the fields they are logging is spotty. Is there any way to enable logging for all available fields?&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a deployment server, would that be of help in this situation?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For context, I've included a list of some specific fields we're looking for below:&lt;/P&gt;&lt;P&gt;date, time, c-ip, cs-username, s-ip, s-port, cs-method, cs-uri-stem, etc.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Jul 2023 21:03:41 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Enable-Logging-for-IIS-Fields/m-p/651804#M110693</guid>
      <dc:creator>matthew-miller</dc:creator>
      <dc:date>2023-07-24T21:03:41Z</dc:date>
    </item>
    <item>
      <title>Re: Enable Logging for IIS Fields</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Enable-Logging-for-IIS-Fields/m-p/651806#M110694</link>
      <description>&lt;P&gt;&lt;A href="https://docs.splunk.com/Documentation/AddOns/released/MSIIS/Hardwareandsoftwarerequirements#Microsoft_IIS_setup_requirements" target="_blank"&gt;https://docs.splunk.com/Documentation/AddOns/released/MSIIS/Hardwareandsoftwarerequirements#Microsoft_IIS_setup_requirements&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Jul 2023 21:36:36 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Enable-Logging-for-IIS-Fields/m-p/651806#M110694</guid>
      <dc:creator>PickleRick</dc:creator>
      <dc:date>2023-07-24T21:36:36Z</dc:date>
    </item>
    <item>
      <title>Re: Enable Logging for IIS Fields</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Enable-Logging-for-IIS-Fields/m-p/651913#M110705</link>
      <description>&lt;P&gt;Will the add-on allow me to change what data is coming in? I was under the impression that just parsed log files.&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jul 2023 14:03:52 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Enable-Logging-for-IIS-Fields/m-p/651913#M110705</guid>
      <dc:creator>matthew-miller</dc:creator>
      <dc:date>2023-07-25T14:03:52Z</dc:date>
    </item>
    <item>
      <title>Re: Enable Logging for IIS Fields</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Enable-Logging-for-IIS-Fields/m-p/652001#M110719</link>
      <description>&lt;P&gt;Did you see that particular page I pointed you to? There is a section on where and for what exactly you should look in Microsoft's documentation to configure IIS properly.&lt;/P&gt;</description>
      <pubDate>Wed, 26 Jul 2023 06:00:50 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Enable-Logging-for-IIS-Fields/m-p/652001#M110719</guid>
      <dc:creator>PickleRick</dc:creator>
      <dc:date>2023-07-26T06:00:50Z</dc:date>
    </item>
  </channel>
</rss>

