Splunk for the win(dows): Archive for the 'Windows Management' Tab

Getting started with Splunk on Windows, a short subject documentary

Here in the Ivory Tower of Splunk, it’s easy to forget sometimes that people in the rest of the world are busy too. Despite our undying love for search software, there are plenty of people out there who are just doing a drive-by of our software. We should make it super - dead - simple to [...]

Splunking for a rogue exchange admin

Recently I was speaking with a customer who was concerned that one of the Windows admins was reading the email of regular users. Thought I’d share this tidbit as a simple example of the power of search. In this case, we didn’t even have to go to other data sources other than the relevant event [...]