Hi ,
I would like to write a search for logon failure on active directory and results should include the columns like time, username, event id, computer name.
Logs are already flooding into Splunk, so I just need this search so that those logs can be viewed in a table.
Thanks,
Uma.
... View more