Deployment Architecture

How do I index W3C logs from my Web Server

eantonio
Path Finder

I'm deploying the UF to my Web Severs and I want to be able to pull W3C logs. What config settings in the UF do I need to add in order to do this? I'm deploying the UF using SCCM.

Tags (4)
0 Karma

jbsplunk
Splunk Employee
Splunk Employee

This has been address in a couple of different threads, but try starting here:

http://splunk-base.splunk.com/answers/36/how-to-extract-fields-from-iis-default-log-file-format-w3c-...

0 Karma

eantonio
Path Finder

I'm also planning to install UF to my DMZ Servers and I need to monitor who is accessing my DMZ Servers from internal/external source. What would be the best Search Command to execute in Splunk Web Interface?

0 Karma

eantonio
Path Finder

Can you tell me what search value I need to execute in order to tell who is accessing my Web Server?

0 Karma
Get Updates on the Splunk Community!

Dashboard Studio Challenge - Learn New Tricks, Showcase Your Skills, and Win Prizes!

Reimagine what you can do with your dashboards. Dashboard Studio is Splunk’s newest dashboard builder to ...

Introducing Edge Processor: Next Gen Data Transformation

We get it - not only can it take a lot of time, money and resources to get data into Splunk, but it also takes ...

Take the 2021 Splunk Career Survey for $50 in Amazon Cash

Help us learn about how Splunk has impacted your career by taking the 2021 Splunk Career Survey. Last year’s ...