All Apps and Add-ons

Splunk_TA_windows

Gayathirikuppus
New Member

Need an understanding on this below configuration:

[default]
evt_dc_name =
evt_dns_name =

we have the above configuration in splunk_TA_windows.Could you please let me know what does it mean when we have empty value assigned for it

Tags (1)
0 Karma

niketn
Legend

@Gayathirikuppusamy, this is to override system default values (if present). You can provide your own settings in the App's local directory to set this value.

For details on the configuration refer to input.conf for Windows Event Log monitoring:

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"
0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...