Getting Data In

How do you extract fields from IIS logs?

davidblizzard
Explorer

Good morning.

I have to set up my universal forwarder to capture IIS logs. The problem is the fields are not extracting fully. I am not sure what files to configure to extract them properly. Any help is appreciated.

thanks!

0 Karma
1 Solution

Rob2520
Communicator

@davidblizzard There is a TA out there on Splunk base https://splunkbase.splunk.com/app/3185/#/details which works pretty good.

View solution in original post

0 Karma

Rob2520
Communicator

@davidblizzard There is a TA out there on Splunk base https://splunkbase.splunk.com/app/3185/#/details which works pretty good.

0 Karma
Get Updates on the Splunk Community!

Updated Data Type Articles, Anniversary Celebrations, and More on Splunk Lantern

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

A Prelude to .conf25: Your Guide to Splunk University

Heading to Boston this September for .conf25? Get a jumpstart by arriving a few days early for Splunk ...

4 Ways the Splunk Community Helps You Prepare for .conf25

.conf25 is right around the corner, and whether you’re a first-time attendee or a seasoned Splunker, the ...