All Apps and Add-ons

Blacklisting for Splunk Stream on Windows?

akyz
Explorer

Is there a way to blacklist data being ingested via Splunk Stream via src_ip? 

I've tried the below but I'm not sure if it's supported or not.

blacklist = src_ip="10.10.10.10"

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Developer Spotlight with Brett Adams

In our third Spotlight feature, we're excited to shine a light on Brett—a Splunk consultant, innovative ...

Index This | What can you do to make 55,555 equal 500?

April 2025 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with this ...

Say goodbye to manually analyzing phishing and malware threats with Splunk Attack ...

In today’s evolving threat landscape, we understand you’re constantly bombarded with phishing and malware ...