<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Exchange 2010 Mailbox Audit Logs in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Exchange-2010-Mailbox-Audit-Logs/m-p/102274#M21458</link>
    <description>&lt;P&gt;In version 2.1.2 of the "Splunk App for Microsoft Exchange", the &lt;STRONG&gt;TA-Exchange-2010-MailboxStore&lt;/STRONG&gt; has a scripted input that collects the mailbox audit logs into a sourcetype called &lt;STRONG&gt;MSExchange:2010:MailboxAudit&lt;/STRONG&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 16 Mar 2014 19:32:07 GMT</pubDate>
    <dc:creator>gpullis</dc:creator>
    <dc:date>2014-03-16T19:32:07Z</dc:date>
    <item>
      <title>Exchange 2010 Mailbox Audit Logs</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Exchange-2010-Mailbox-Audit-Logs/m-p/102273#M21457</link>
      <description>&lt;P&gt;Is Splunk able to collect exchange 2010 mailbox audit logs from each mailbox and how? The mailbox audit logs are written within each application and stored on each mailbox. Since the mailbox audit logs are not written to windows event folder or a flat file can splunk collect these logs from the mailboxes to a central location and how can it do that?&lt;/P&gt;</description>
      <pubDate>Sun, 21 Apr 2013 18:36:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Exchange-2010-Mailbox-Audit-Logs/m-p/102273#M21457</guid>
      <dc:creator>vikdiva</dc:creator>
      <dc:date>2013-04-21T18:36:28Z</dc:date>
    </item>
    <item>
      <title>Re: Exchange 2010 Mailbox Audit Logs</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Exchange-2010-Mailbox-Audit-Logs/m-p/102274#M21458</link>
      <description>&lt;P&gt;In version 2.1.2 of the "Splunk App for Microsoft Exchange", the &lt;STRONG&gt;TA-Exchange-2010-MailboxStore&lt;/STRONG&gt; has a scripted input that collects the mailbox audit logs into a sourcetype called &lt;STRONG&gt;MSExchange:2010:MailboxAudit&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 16 Mar 2014 19:32:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Exchange-2010-Mailbox-Audit-Logs/m-p/102274#M21458</guid>
      <dc:creator>gpullis</dc:creator>
      <dc:date>2014-03-16T19:32:07Z</dc:date>
    </item>
  </channel>
</rss>

