Deployment Architecture

How do I index W3C logs from my Web Server

eantonio
Path Finder

I'm deploying the UF to my Web Severs and I want to be able to pull W3C logs. What config settings in the UF do I need to add in order to do this? I'm deploying the UF using SCCM.

Tags (4)
0 Karma

jbsplunk
Splunk Employee
Splunk Employee

This has been address in a couple of different threads, but try starting here:

http://splunk-base.splunk.com/answers/36/how-to-extract-fields-from-iis-default-log-file-format-w3c-...

0 Karma

eantonio
Path Finder

I'm also planning to install UF to my DMZ Servers and I need to monitor who is accessing my DMZ Servers from internal/external source. What would be the best Search Command to execute in Splunk Web Interface?

0 Karma

eantonio
Path Finder

Can you tell me what search value I need to execute in order to tell who is accessing my Web Server?

0 Karma
Get Updates on the Splunk Community!

Devesh Logendran, Splunk, and the Singapore Cyber Conquest

At this year’s Splunk University, I had the privilege of chatting with Devesh Logendran, one of the winners in ...

There's No Place Like Chrome and the Splunk Platform

WATCH NOW!Malware. Risky Extensions. Data Exfiltration. End-users are increasingly reliant on browsers to ...

Customer Experience | Join the Customer Advisory Board!

Are you ready to take your Splunk journey to the next level? 🚀 We invite you to join our elite squad ...