Deployment Architecture

How do I index W3C logs from my Web Server

eantonio
Path Finder

I'm deploying the UF to my Web Severs and I want to be able to pull W3C logs. What config settings in the UF do I need to add in order to do this? I'm deploying the UF using SCCM.

Tags (4)
0 Karma

jbsplunk
Splunk Employee
Splunk Employee

This has been address in a couple of different threads, but try starting here:

http://splunk-base.splunk.com/answers/36/how-to-extract-fields-from-iis-default-log-file-format-w3c-...

0 Karma

eantonio
Path Finder

I'm also planning to install UF to my DMZ Servers and I need to monitor who is accessing my DMZ Servers from internal/external source. What would be the best Search Command to execute in Splunk Web Interface?

0 Karma

eantonio
Path Finder

Can you tell me what search value I need to execute in order to tell who is accessing my Web Server?

0 Karma
Get Updates on the Splunk Community!

Splunk App for Anomaly Detection End of Life Announcment

Q: What is happening to the Splunk App for Anomaly Detection?A: Splunk is officially announcing the ...

Aligning Observability Costs with Business Value: Practical Strategies

 Join us for an engaging Tech Talk on Aligning Observability Costs with Business Value: Practical ...

Mastering Data Pipelines: Unlocking Value with Splunk

 In today's AI-driven world, organizations must balance the challenges of managing the explosion of data with ...