Files
splunk-security_content/macros/powershell.yml
T
2021-05-12 12:58:00 -07:00

5 lines
281 B
YAML

definition: sourcetype=wineventlog OR source=WinEventLog:Microsoft-Windows-PowerShell/Operational
description: customer specific splunk configurations(eg- index, source, sourcetype).
Replace the macro definition with configurations for your Splunk Environmnent.
name: powershell