Splunk® App for Microsoft Exchange (EOL)

Splunk App for Microsoft Exchange Reference

On October 22 2021, the Splunk App for Microsoft Exchange will reach its end of life. After this date, Splunk will no longer maintain or develop this product. The functionality in this app is migrating to a content pack in Data Integrations. Learn about the Content Pack for Microsoft Exchange.
This documentation does not apply to the most recent version of Splunk® App for Microsoft Exchange (EOL). For documentation on the most recent version, go to the latest release.

Windows Overview

Exch 30 windowsoverview.png

The Overview dashboard contains three panels: Windows events, Windows performance counters and All indexed data.

The "Windows events" panel has counters for numbers of hosts, log names, and event IDs. The "Windows performance counters" panel has counters for numbers of hosts, performance objects, and performance counters.

Windows events: Provides information on the number of hosts from which event log data is being collected, the number of event logs and number of event IDs.

Windows performance counters: Provides information on the number of hosts from which performance data is being collected, number of objects and total number of counters.

All indexed data: Provides a chronologically-sorted list of the sources, source types, and hosts that the Splunk App for Microsoft Exchange has collected data on.

How to use this page

  • You can control how much data this panel displays by clicking the time picker and choosing one of the available range presets or selecting a custom time range.
  • You can click on the "Windows events" and "Windows performance counters" links. The Splunk App for Microsoft Exchange takes you to a Search page that lists all of the events found for that particular counter.
Last modified on 04 April, 2017
Non-owner Mailbox Access   Event Monitoring

This documentation applies to the following versions of Splunk® App for Microsoft Exchange (EOL): 3.4.2, 3.4.3, 3.4.4, 3.5.0, 3.5.1, 3.5.2, 4.0.0, 4.0.1, 4.0.2, 4.0.3


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters