I have been tasked with increasing the logging coming from our Exchange servers. One of the requests is to include logging of email attachment content, size, name, or anything else I can collect. I...
Hi,
we would like to monitor authentication attempts in our SMTP server (Exchange 2016) but I could not find a way to do so.
We already have IT Essentials with theExchangeContentPack but S...
I was wondering if the Splunk App forMicrosoftExchange can show thecontents of the body of an email message?
If so, how can I set up a search or alert for this?
Hi, after the installation of ITE Works 4.9.2 and theexchangecontentpack. I checked all the dashboards to be sure the data was correctly processed and I realized that some panels were blank. O...
Hi, recently we deployed IT Essential Works with latest ExchangeContentPack. we also deployed the three addons fortheExchange in theexchange nodes (including IIS and OWA logs). N...
Hi, I have configured IT Essential Works (4.9.2) with Exchangecontentpack (1.4.3) and TA-Exchange-ClientAccess (4.0.3). By chance I was checking PowerShell event logs in our exchange s...
Hello,
I want to use ITSI ContentPack as a base for implementing ITSI. I also see a documentation about it in https://docs.splunk.com/Documentation/ITSICP/current/Config/About
But, it does not t...
...hat is our full blacklist. This is being done via Windows_TA inputs.conf file within the local directory being deployed to all universal forwarders. I am trying to exclude any message received by W...
We run a few Exchange servers and we need to collect logs for our Splunk Enterprise Security Suite, however, there are many webapps running on an Exchange server, we want to trim the logs we c...