Good Morning,
I'm trialing Splunk Cloud in anticipation of a purchase. I have installed Splunk Enterprise as the deployment server and universal forwarders on three servers. My clients are s...
...ound the application "splunk for windows infrastructure"
I have successfully configured add on Splunk_TA_microsoft_ad on the portal.
of course these 2 add ons exist in C:\Program Files\S...
I've heard that using Splunk's default sourcetype detection is flexible, but can be hard on performance. What is the best way to define sourcetypes that keeps performance speedy?
I installed the Splunk for Palo Alto Networks app. I am getting data and my index and sourcetypes are correct. When I do searches, all the PA fields are getting extracted.
However, I only the Overview...