Getting Data In

How to monitor my local browser history in Splunk?

twh1
Communicator

I have installed Splunk Enterprise free version on my personal PC. I want to track the URLs are visited from the browser in my Splunk dashboard. I tried to monitor the local App data directory (C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default).

Still I am unable to get the URL details in my Splunk.

Thanks in advance
Ritesh

0 Karma

mattymo
Splunk Employee
Splunk Employee

hi twh1,

The history file found at that path is a SQLite db file.

If you try and open that file in a text editor, you will see that it is not an readable text file, and as such, Splunk won't be able to handle it the way you would like by simply pointing a monitor at it.

It looks like there is an app on Splunkbase that claims to be able to allow you to index these files, though I have never tried it. It appears to leverage a python script and SQLite binary...which means a universal forwarder won't be able to do it without some customization as a UF doesn't ship with python.

https://splunkbase.splunk.com/app/1217/

I'll give it a try when I get the chance.

- MattyMo
0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Can’t Make It to Boston? Stream .conf25 and Learn with Haya Husain

Boston may be buzzing this September with Splunk University and .conf25, but you don’t have to pack a bag to ...

Splunk Lantern’s Guide to The Most Popular .conf25 Sessions

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Unlock What’s Next: The Splunk Cloud Platform at .conf25

In just a few days, Boston will be buzzing as the Splunk team and thousands of community members come together ...