Splunk Search

Daily Report for Windows Security Logs

paraspiral
New Member

What would be the best search string for to do a Daily Report For Windows Security Logs for a 24 hour period?

Is there a way I can export this into a pdf and have it e-mailed to a certain e-mail address on a daily basis.

0 Karma

woodcock
Esteemed Legend

Start on the splunkbase and look for apps.; search for "security" and "ransomware" and you should find many apps to try.

0 Karma

adonio
Ultra Champion

this seems to be a very broad question,
what would you like to see in your "Daily Report For Windows Security Logs"?
regarding exporting, yes you can export as PDF and email on a daily basis. save the report and schedule it

0 Karma
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...