Additionally, SMTP logs store the remote-endpoint as a single field of IP and Port.
This script takes *.log from the directory you specify, and will search for lines containing "Queued" - meaning an email was accepted by the connector and write those to a temporary file. Then it will parse the data, the Top client IP addresses along with a count!
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiXZ-YrakvEqbMPNCeLMwaMzGaJfmsxxi2k1-FnBmIN_v1AFUDjIO7Xw_vCgAEh9rJuh71gdydmNXNmlu7dBa7MAL0QZteq5pbq5B2GUdzOxQkbDw1HHUiS50iEe61C3-OHTRlcOQ/s640/Parse-TransportLogs.png)
Depending on the size of your log file data, this can take some time to run!
Download today from the TechNet Gallery!
No comments:
Post a Comment