I am attempting to follow the online documentation/PDF for configuring my AD forwarder, but am having some trouble.
When customizing the index names in the .conf files, where in my Splunk install can I find these? Does anyone know the default index names that would have been used?
I installed the Splunk portion on my Kubuntu linux receiver a couple of weeks ago, and now am trying to configure the DC in my new DEV AD environment for Windows testing.
Thank you for any replies/help in advance