Getting Data In

Are there alternatives to log Isilon SMB activity in Splunk?

crahimi
Explorer

We are trying to use splunk to log our Isilon SMB activity. However it does not seem like the TA for CEE server will run on Windows and CEE server is only available for Windows? Are there any alternative ways folks have successfully logged this information to splunk ie syslog?

0 Karma

dmaislin_splunk
Splunk Employee
Splunk Employee

Have you tried using the Splunk App for Stream? You could configure it on the server that mounts the directories, and specifically monitor any port and protocol required. Events will be collected from the wire and logged as JSON events into Splunk.

0 Karma
Get Updates on the Splunk Community!

Cisco Catalyst Center Meets Splunk ITSI: From 'Payments Are Down' to Root Cause in ...

The Problem: When Networks and Services Don't Talk Payment systems fail at a retail location. Customers are ...

Print, Leak, Repeat: UEBA Insider Threats You Can't Ignore

Are you ready to uncover the threats hiding in plain sight? Join us for "Print, Leak, Repeat: UEBA Insider ...

New Year, New Changes for Splunk Certifications

As we embrace a new year, we’re making a small but important update to the Splunk Certification ...