Deployment Architecture

How to generate a search which will indicate which hosts are communicating with two old DNS servers?

gregdoma
New Member

Hi All,

I need to generate a search and a report which will indicate which hosts are communicating with 2 old DNS servers i need to decommission. I am a Splunk noob and I did not find the data needed easily so I figured I will ask for help.

Your input is much appreciated and many thanks!

Greg

0 Karma

adonio
Ultra Champion

hello there,
if you dont have the data in splunk, you will not be able to create the report ...
bring the data from those DNS servers (or all other servers) and search for the DNS server names. check which "host" field is associated with them. that will be a good start imho/

hope it helps a little

0 Karma
Get Updates on the Splunk Community!

Observability Unlocked: Kubernetes Monitoring with Splunk Observability Cloud

 Ready to master Kubernetes and cloud monitoring like the pros? Join Splunk’s Growth Engineering team for an ...

Update Your SOAR Apps for Python 3.13: What Community Developers Need to Know

To Community SOAR App Developers - we're reaching out with an important update regarding Python 3.9's ...

October Community Champions: A Shoutout to Our Contributors!

As October comes to a close, we want to take a moment to celebrate the people who make the Splunk Community ...