Getting Data In

Custom Windows Event Log

davidts
Path Finder

Our developers have created a custom Windows Event Log to log events from an In-House develop app. What would be the best way to index this custom event log?

Tags (3)
0 Karma

mloven_splunk
Splunk Employee
Splunk Employee

Just add in an input stanza like this.

[WinEventLog:customname]
disabled = 0
index=windows
Get Updates on the Splunk Community!

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...