I have the Splunk App for Windows Infrastructure installed and configured. I am getting both windows and AD logs into the app. However, I am missing the following lookups. They are not being built by the Apps Lookup builder. Is there anyway to get these lookups?
Hi there. Those lookups are shipped, not built. You may find them in the original download package for Windows Infrastructure under the lookups folder.
Thanks!
Jeff.
Hi there. Those lookups are shipped, not built. You may find them in the original download package for Windows Infrastructure under the lookups folder.
Thanks!
Jeff.
Thanks, Found then within the installation folder.