All Apps and Add-ons

Any reason why the TCP_REFRESH_MODIFIED and TCP_MEM_HIT response codes aren't in lookups/squid_actions.csv?

chris_barrett
SplunkTrust
SplunkTrust

I have a squid access log that has entries contain with status codes of TCP_REFRESH_MODIFIED and TCP_MEM_HIT - all with a HTTP status code of 200. These events don't have an 'action' field as the status codes don't appear in the TA's squid_actions.csv lookup file.

Is this by design, or an oversight/bug?

0 Karma
Get Updates on the Splunk Community!

.conf25 Community Recap

Hello Splunkers, And just like that, .conf25 is in the books! What an incredible few days — full of learning, ...

Splunk App Developers | .conf25 Recap & What’s Next

If you stopped by the Builder Bar at .conf25 this year, thank you! The retro tech beer garden vibes were ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...