<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: nslookup TXT queries with Splunk in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/nslookup-TXT-queries-with-Splunk/m-p/447893#M146125</link>
    <description>&lt;P&gt;While it may not be possible to do TXT queries out of the box, an app has now been created for this &lt;A href="https://splunkbase.splunk.com/app/4879/#/details"&gt;here&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;This app adds a custom &lt;CODE&gt;dnsquery&lt;/CODE&gt; command which utilizes &lt;CODE&gt;dnspython&lt;/CODE&gt; package under the hood and allows you to do DNS queries on hostnames - tested to work for &lt;CODE&gt;CNAME, MX, TXT, A, PTR&lt;/CODE&gt; records.&lt;/P&gt;</description>
    <pubDate>Tue, 11 Feb 2020 00:50:40 GMT</pubDate>
    <dc:creator>manasbellani</dc:creator>
    <dc:date>2020-02-11T00:50:40Z</dc:date>
    <item>
      <title>nslookup TXT queries with Splunk</title>
      <link>https://community.splunk.com/t5/Splunk-Search/nslookup-TXT-queries-with-Splunk/m-p/447890#M146122</link>
      <description>&lt;P&gt;I am trying to see if its possible to run nslookup -q=TXT domain 8.8.8.8 so i can compare the results of the output to an existing lookup csv file.&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2019 15:25:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/nslookup-TXT-queries-with-Splunk/m-p/447890#M146122</guid>
      <dc:creator>urana</dc:creator>
      <dc:date>2019-05-06T15:25:43Z</dc:date>
    </item>
    <item>
      <title>Re: nslookup TXT queries with Splunk</title>
      <link>https://community.splunk.com/t5/Splunk-Search/nslookup-TXT-queries-with-Splunk/m-p/447891#M146123</link>
      <description>&lt;P&gt;Do either of these help? If not, why not?&lt;BR /&gt;
&lt;A href="https://answers.splunk.com/answers/105246/dns-resolution-in-a-search.html"&gt;https://answers.splunk.com/answers/105246/dns-resolution-in-a-search.html&lt;/A&gt;&lt;BR /&gt;
&lt;A href="https://answers.splunk.com/answers/8051/dns-lookup-via-splunk.html"&gt;https://answers.splunk.com/answers/8051/dns-lookup-via-splunk.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2019 20:11:52 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/nslookup-TXT-queries-with-Splunk/m-p/447891#M146123</guid>
      <dc:creator>efavreau</dc:creator>
      <dc:date>2019-05-06T20:11:52Z</dc:date>
    </item>
    <item>
      <title>Re: nslookup TXT queries with Splunk</title>
      <link>https://community.splunk.com/t5/Splunk-Search/nslookup-TXT-queries-with-Splunk/m-p/447892#M146124</link>
      <description>&lt;P&gt;Hi urana,&lt;/P&gt;

&lt;P&gt;The default shipped command &lt;CODE&gt;dnslookup&lt;/CODE&gt; does not provide this functionality. If you need a fully featured command like linux &lt;CODE&gt;dig&lt;/CODE&gt; you would need to created a custom search command yourself. It could be as easy as creating a wrapper for dig and output thew results to Splunk &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt; See the docs for an example to write a custom search command &lt;A href="https://docs.splunk.com/Documentation/Splunk/latest/Search/Customsearchcommandshape"&gt;https://docs.splunk.com/Documentation/Splunk/latest/Search/Customsearchcommandshape&lt;/A&gt; &lt;/P&gt;

&lt;P&gt;Hope this helps ...&lt;/P&gt;

&lt;P&gt;cheers, MuS&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2019 20:24:57 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/nslookup-TXT-queries-with-Splunk/m-p/447892#M146124</guid>
      <dc:creator>MuS</dc:creator>
      <dc:date>2019-05-06T20:24:57Z</dc:date>
    </item>
    <item>
      <title>Re: nslookup TXT queries with Splunk</title>
      <link>https://community.splunk.com/t5/Splunk-Search/nslookup-TXT-queries-with-Splunk/m-p/447893#M146125</link>
      <description>&lt;P&gt;While it may not be possible to do TXT queries out of the box, an app has now been created for this &lt;A href="https://splunkbase.splunk.com/app/4879/#/details"&gt;here&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;This app adds a custom &lt;CODE&gt;dnsquery&lt;/CODE&gt; command which utilizes &lt;CODE&gt;dnspython&lt;/CODE&gt; package under the hood and allows you to do DNS queries on hostnames - tested to work for &lt;CODE&gt;CNAME, MX, TXT, A, PTR&lt;/CODE&gt; records.&lt;/P&gt;</description>
      <pubDate>Tue, 11 Feb 2020 00:50:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/nslookup-TXT-queries-with-Splunk/m-p/447893#M146125</guid>
      <dc:creator>manasbellani</dc:creator>
      <dc:date>2020-02-11T00:50:40Z</dc:date>
    </item>
  </channel>
</rss>

