All Apps and Add-ons

solaris /var/adm/wtmpx

juradob
New Member

Before re-inventing the wheel - does any one have solution/script for importing /var/adm/wtmpx via the last command on solaris ? thanks

Tags (2)
0 Karma

LCM
Contributor

/var/adm/wtmpx is the database which command last is accessing. So, I suggest you to run the last command in splunk on a regulary basis.

You may write a simple shell script and place that in $SPLUNK_HOME/bin/scripts

Get Updates on the Splunk Community!

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...

Introducing the 2024 Splunk MVPs!

We are excited to announce the 2024 cohort of the Splunk MVP program. Splunk MVPs are passionate members of ...

Splunk Custom Visualizations App End of Life

The Splunk Custom Visualizations apps End of Life for SimpleXML will reach end of support on Dec 21, 2024, ...