Hi,
I urgently need at least a TA for MS DNS for some work I am doing. Doesn't need to be anything special i.e. no dashboard/views etc.
I need field extracts for all field contained within event using regex. Also I need to be able to created some saved searches using the field extractions, and then alert from it.
Please contact me if you are interested.
Thanks
G
Hi there,
Have you seen the Addon component for Microsoft DNS that is part of the Splunk App for Active Directory? It's located here. Let us know if this doesn't do what you're asking.
http://apps.splunk.com/app/1059/
It's inside the Splunk_for_Activedirectory/appserver/addons directory