Getting Data In

To monitor IIS Logs from remote Server

chimbudp
Contributor

Need to monitor IIS Logs of remote windows Servers
I am using universal forwarders to bring data into Splunk

  • Please help in creating inputs.conf
Tags (4)
0 Karma
1 Solution

jbsplunk
Splunk Employee
Splunk Employee

Should be pretty simple to do this, something like this would work:

[monitor://c:\myiisfolder\]
disabled = false
followTail = 0
sourcetype=iis

The thing is, you need to be able to get those logs accessible via some kind of file sharing. So long as permissions are okay, this won't pose any issue for you.

View solution in original post

jbsplunk
Splunk Employee
Splunk Employee

Should be pretty simple to do this, something like this would work:

[monitor://c:\myiisfolder\]
disabled = false
followTail = 0
sourcetype=iis

The thing is, you need to be able to get those logs accessible via some kind of file sharing. So long as permissions are okay, this won't pose any issue for you.

Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...