Security

How to create a WIDS/IDPS/Internet Content Filtering dashboard in Splunk?

waJesu
Path Finder
I need help on how to create a WIDS/IDPS/Internet Content Filtering dashboard in Splunk so that I can continuously monitor the web traffic or pull up reports when asked.
Tags (2)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @waJesu,

your question is just a little bit vague,

could you better describe your requirement, the data source that you need to monitor and the level of your Splunk knowledge?

In the meantime I hint to search in Splunkbase if there's some App (e.g. using your IPS technology) to use as starting point for your activity.

Ciao.

Giuseppe

0 Karma

waJesu
Path Finder

I am not very experienced. I would like to monitor the IPS for traffic from the internet. I need to come up with a dashboard. It's the splunk query to use that I am looking for.

 

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...