Quantcast
Viewing all articles
Browse latest Browse all 13053

Index EVTX files on Splunk running on non-Windows box

I am running Splunk for Mac (Darwin) on my laptop. I have received handful of EVTX files for analysis from a project team trying to visualize events captured in these event files. I understand that, EVTX files requires Windows APIs and DLLs to index or run Splunk on Windows to index them correctly.

However, is there a workaround to get these EVTX files indexed on Splunk instance running on Mac?

Please suggest.


Viewing all articles
Browse latest Browse all 13053

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>