I am using access_combined to parse IHS access logs. But on WAS side there aren't any fields that i can tie to IHS. So i was wondering if there's anything i can enable to have WAS add something to the logs to let me tie them together.I did download the WAS app for Splunk.I did setup a forwarder appliance and i can see the relevant WAS event types and such.Unfortunately there are no transaction IDs or Session IDs that are printed in the logs by default.So i was asking if there are any Splunk customers that have IBM IHS with WAS and can do the correlation. And what do they do it on?
Thanks!
... View more