• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 43
  • Last Modified:

SPLUNK - TRN job configuration on SQL 2014

Hi

I am new to Splunk and I need an expert to direct(explain) me what (how) SQL job i need to configure  to receive TRN log on  SQL 2014 server for SPLUNK. Please check attachment and look for line  highlighted on blue .
how to capture db tables in particular database  or logins, this is for splunk.

Do you know how to generate TRN log file (highlighted on blue) for one specific database or for all for SPLUNK?

Thx, M
SPLUNK-pict.jpg
0
michalek19
Asked:
michalek19
  • 2
2 Solutions
 
Martin MillerCTOCommented:
Hi, This question has an element a MS-SQL DB configuration question. If I have read this correctly you need to enable TRANSACTION logs in MS-SQL server, and then point the Splunk agent to where this log is being written.
0
 
michalek19Author Commented:
Can you tell me how to enable TRANSACTION logs in MS-SQL server, step by step?
0
 
Vitor MontalvãoMSSQL Senior EngineerCommented:
What's SPLUNK is catching is a BACKUP TRANSACTION LOG command. All backups performed in SQL Server is logged in the Windows Event Log and that's why SPLUNK's catching it.
0
 
Martin MillerCTOCommented:
michalek19, can we close this ?
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

Cloud Class® Course: Microsoft Windows 7 Basic

This introductory course to Windows 7 environment will teach you about working with the Windows operating system. You will learn about basic functions including start menu; the desktop; managing files, folders, and libraries.

  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now