Quantcast
Viewing all articles
Browse latest Browse all 47296

How to search Windows Event ID 1074 (shutdown event) to build a daily report on unscheduled Windows server reboots?

Wondered if anyone has built a search around Windows Event ID 1074 (shutdown event) in Splunk. Looking to build a daily report around unscheduled Windows Server reboots.

Viewing all articles
Browse latest Browse all 47296

Trending Articles