All Apps and Add-ons

how to visualize access_combined in splunk ?

omaromar123
New Member

i am new on splunk and i just want to monitor my network to test splunk, but nothing seems to work \
i am getting really frustrated and lost
i want to be able to view traffic on my network on splunk on my pc
can someone plz help i would much appreciate it 🙂

0 Karma

solarboyz1
Builder

That's a pretty broad question. Do you have the data in Splunk? What are you trying to visualize (Access by user, event codes by time, etc..).

Have you looked at/installed the add-on? https://splunkbase.splunk.com/app/3434/

0 Karma

omaromar123
New Member

i want to vuisualize my networking traffic, like http requests, tcp or udp

0 Karma

omaromar123
New Member

i will download the add on u provided me to test it out
Thanks X)

0 Karma

Sukisen1981
Champion

hi @omaromar123
I am assuming you have gone through this - https://docs.splunk.com/Documentation/Splunk/7.3.1/Data/MonitorWindowsnetworkinformation
if you are on windows, can you tell us what error you are facing?

0 Karma

omaromar123
New Member

yes i have done this but i am not getting any results.
i am on windows and i would like to visualize the network traffic on my pc like tcp traffic, http requests, ..

0 Karma
Get Updates on the Splunk Community!

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...

[Live Demo] Watch SOC transformation in action with the reimagined Splunk Enterprise ...

Overwhelmed SOC? Splunk ES Has Your Back Tool sprawl, alert fatigue, and endless context switching are making ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...