All Apps and Add-ons

Scan multiple subnets for possible windows hosts

tnewman
New Member

I'm looking for a way to have Splunk search an ip range for Windows hosts, and import them as event log sources. All I can find is a way to put them in manually, but that could take quite some time. I've tried plain vanilla Splunk and the app for Windows. Is what I'm looking for a possibility?

Thanks!

0 Karma

dshpritz
SplunkTrust
SplunkTrust

This isn't really something that Splunk does. You may want to take a look at nmap to try to identify the Windows hosts:
http://nmap.org/

Of course, you can take the output from nmap and put it back into Splunk to find more information.

HTH,

Dave

0 Karma
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...