Getting Data In

How do you extract fields from IIS logs?

davidblizzard
Explorer

Good morning.

I have to set up my universal forwarder to capture IIS logs. The problem is the fields are not extracting fully. I am not sure what files to configure to extract them properly. Any help is appreciated.

thanks!

0 Karma
1 Solution

Rob2520
Communicator

@davidblizzard There is a TA out there on Splunk base https://splunkbase.splunk.com/app/3185/#/details which works pretty good.

View solution in original post

0 Karma

Rob2520
Communicator

@davidblizzard There is a TA out there on Splunk base https://splunkbase.splunk.com/app/3185/#/details which works pretty good.

0 Karma
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...