Getting Data In

Monitor CD DVD activity on Windows machines (Data transfer)

sbettison
New Member

I am new to SPLUNK. Installed SPLUNK enterprise and have installed splunk forwarder on a workstation. Configured Data forwarder on Indexer to send Application, System and Security logs from the workstation. I want report on CD DVD activity on this client machine, and not sure how to do this. Is there a particular EVENT ID I should be using? I have copied data from DVD to the local machine and back again but cannot find any events. Is there something else I need to setup on the client machine?

Any help on this would be much appreciated.

0 Karma
1 Solution

sbettison
New Member

Thanks for reply and the link to EventTracker .. most useful

0 Karma
Get Updates on the Splunk Community!

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Deprecation of Splunk Observability Kubernetes “Classic Navigator” UI starting ...

Access to Splunk Observability Kubernetes “Classic Navigator” UI will no longer be available starting January ...

Now Available: Cisco Talos Threat Intelligence Integrations for Splunk Security Cloud ...

At .conf24, we shared that we were in the process of integrating Cisco Talos threat intelligence into Splunk ...