Splunk Search

How to create inventory that matches user to the devices they have logged into?

Yokova
New Member

Hello All,

I am looking for a solution to establish a kind of IT inventory, based on logins.

Is there any working solution that matches users to devices they logged into?

Available source is AD and

wineventlog:security

Thank you for any ideas for a solution.

Labels (1)
Tags (1)
0 Karma

spayneort
Contributor
0 Karma
Get Updates on the Splunk Community!

Celebrating Fast Lane: 2025 Authorized Learning Partner of the Year

At .conf25, Splunk proudly recognized Fast Lane as the 2025 Authorized Learning Partner of the Year. This ...

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...