Reporting

How do you use Windows logs usually?

AntoineDRN
Path Finder

Hi everyone !

 

As an intern for an engineer degree, I have to make a stat of the art around Windows logs and how it is used with Splunk among others. 

So here is my question, what are you doing usually with Windows logs, which piece of information do you get back and what is the purpose? 

Thank you in advance for your answers!

Regards,

Antoine

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @AntoineDRN,

to make some stat about use of Windows logs, I think that you could start taking the number of downloads of the Windows TA and of Windows Infrastructure app, eventually matching these data with other similar (e.g. TA_Linux and Linux_App).

In this way you could have an idea of the percentage of use of them.

About the kind of uses, you could see the features of the Splunk App for Windows infrastructures.

Ciao.

Giuseppe

Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...