Getting Data In

Radius event issue with wmi.conf

pbalbasm
Path Finder

Hi all,

We have a radius server forwarding information to splunk. When we look into the events, we can see that Splunk collects again and again the same events (ex: RecordNumber=14478 on last 24 hours -> 412 events). We are quering the server via wmi configuration. Is there any way to avoid this behaviour?

Thanks in advance.

0 Karma
Get Updates on the Splunk Community!

Industry Solutions for Supply Chain and OT, Amazon Use Cases, Plus More New Articles ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Enterprise Security Content Update (ESCU) | New Releases

In November, the Splunk Threat Research Team had one release of new security content via the Enterprise ...

Index This | Divide 100 by half. What do you get?

November 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with this ...