All Apps and Add-ons

How can I determine Splunk IDs?

keldridge1
Explorer

I got IDs logs with Windows that I want to be able to identify and see what details that they present. 

0 Karma

inventsekar
SplunkTrust
SplunkTrust

From your question, i could not understand much actually. i feel others will also face same issue. 
More details are needed please..

Splunk ID... the Splunk process ID's or user ID's?

0 Karma

keldridge1
Explorer

The Splunk Process ID's.

0 Karma

isoutamo
SplunkTrust
SplunkTrust
Can you share any sample events/logs for us to help you?
0 Karma

keldridge1
Explorer

Sorry as they are confidential but we are trying to blacklist some of these logs so then information can be blocked.

 

https://docs.splunk.com/Documentation/Splunk/9.1.0/Data/MonitorWindowseventlogdata

0 Karma
Get Updates on the Splunk Community!

.conf24 | Day 0

Hello Splunk Community! My name is Chris, and I'm based in Canberra, Australia's capital, and I travelled for ...

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

(view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...

Troubleshooting the OpenTelemetry Collector

  In this tech talk, you’ll learn how to troubleshoot the OpenTelemetry collector - from checking the ...