Getting Data In

How do you extract fields from IIS logs?

davidblizzard
Explorer

Good morning.

I have to set up my universal forwarder to capture IIS logs. The problem is the fields are not extracting fully. I am not sure what files to configure to extract them properly. Any help is appreciated.

thanks!

0 Karma
1 Solution

Rob2520
Communicator

@davidblizzard There is a TA out there on Splunk base https://splunkbase.splunk.com/app/3185/#/details which works pretty good.

View solution in original post

0 Karma

Rob2520
Communicator

@davidblizzard There is a TA out there on Splunk base https://splunkbase.splunk.com/app/3185/#/details which works pretty good.

0 Karma
Get Updates on the Splunk Community!

Last Chance to Submit Your Paper For BSides Splunk - Deadline is August 12th!

Hello everyone! Don't wait to submit - The deadline is August 12th! We have truly missed the community so ...

Ready, Set, SOAR: How Utility Apps Can Up Level Your Playbooks!

 WATCH NOW Powering your capabilities has never been so easy with ready-made Splunk® SOAR Utility Apps. Parse ...

DevSecOps: Why You Should Care and How To Get Started

 WATCH NOW In this Tech Talk we will talk about what people mean by DevSecOps and deep dive into the different ...