Security

Security
Community Activity
jgauthier
Is is possible to pull the current user name for use in a search? For instance, a search that would do something like...
by jgauthier Contributor in Security 02-06-2017
3 12
3
12
michaelba
Splunk, After completing Active Directory Federation Services (ADFS), our role mappings are not recognized. What are...
by michaelba Explorer in Security 02-05-2017
0 2
0
2
butzowj
Hello, We have Splunk 6.2, and we have a dashboard that utilizes 9 real-time searches and 4 historical searches. On...
by butzowj Path Finder in Security 02-02-2017
1 13
1
13
chrishartsock
I am trying to upgrade one of our Splunk servers from 6.5.1 to 6.5.2. The way we usually do this is wget to get the r...
by chrishartsock Path Finder in Security 02-02-2017
0 2
0
2
sylim_splunk
I'm trying to enable https to Splunk Web. It appears easy and OK to have it enabled but once it is done, splunkd.log ...
by sylim_splunk Splunk Employee Splunk Employee in Security 02-01-2017
0 1
0
1
lexphumirat
Sorry for the easy question, but totally new to splunk. what would be the query to use in search to look up a user ...
by lexphumirat New Member in Security 02-01-2017
0 1
0
1
snoobzilla
We have a fairly large deployment with 60 plus individual apps. These are used almost exclusively by DEVOPS and we ha...
by snoobzilla Builder in Security 01-31-2017
0 8
0
8
balbano
Hi guys, My SplunkWeb SSL Certificate is set to expire tomorrow. I'd like to renew it or regenerate a new one. ...
by balbano Contributor in Security 01-31-2017
1 3
1
3
rewritex
IBM Security Access Manager v9 build 9.0.1.0 * There is a bug which doesn't allow syslog to be sent of UDP, but TLS-T...
by rewritex Contributor in Security 01-31-2017
0 4
0
4
pradjswl
How can I find out, if I am using Splunk Entrprise, Cloud etc without asking the Splunk admin ? I use the weburl on p...
by pradjswl Explorer in Security 01-26-2017
0 3
0
3
mctester
Having the release update notes on the log in page of splunk is nice however it is a security risk as well. An attack...
by mctester Communicator in Security 01-26-2017
0 2
0
2
aaronkorn
Is there a way to specify multiple group search filters for multiple groups? Currently we have this (sAMAccountName =...
by aaronkorn Splunk Employee Splunk Employee in Security 01-25-2017
1 3
1
3
cam343
Hello, All of our Splunk infrastructure utilises our in house PKI for Splunk to Splunk communication. Moving forward...
by cam343 Path Finder in Security 01-24-2017
0 3
0
3
scottrunyon
I came across several reports where MongoDB installations are being targeted in malware attacks. How can verify tha...
by scottrunyon Contributor in Security 01-21-2017
0 5
0
5
bsub
Has anyone implemented SSO using SAML v2 like how it's outlined in the following blog? http://blogs.splunk.com/2013/0...
by bsub Engager in Security 01-20-2017
2 1
2
1
madsurfer
Hi, I enabled SSO for Splunk which works almost fine. I found a very annoying behavior with SSO. If a new user has ...
by madsurfer Explorer in Security 01-20-2017
0 3
0
3
jgauthier
Hey Everyone. Been running splunk behind an apache proxy with NTLM for awhile. (Same host). Today, I decided to mov...
by jgauthier Contributor in Security 01-20-2017
0 6
0
6
Dolley87
Hi, I've just installed Splunk Enterprise and when I try to log in for the first time by clicking on 'Launch browser...
by Dolley87 New Member in Security 01-20-2017
0 4
0
4
ejharts2015
By default when a new user is created, the role of "user" is auto assigned to them. I would like to add another defau...
by ejharts2015 Communicator in Security 01-17-2017
0 8
0
8
twinspop
I have a user that belongs to a few roles that use LDAP for auth. These roles have srchMaxTime set to 600. I need to ...
by twinspop Influencer in Security 01-14-2017
0 2
0
2
infosecowl
my regex query is : xxx.xx.xxx.xxx|regex = (http(s)?:(\/\/)?(w{3}.)?[-a-zA-Z0-9@:%.+~#=]{2,256}(.[a-z]{2,256})?\b([-a...
by infosecowl New Member in Security 01-13-2017
0 2
0
2
tweaktubbie
For auditing and administration purposes I was trying to get a fast listing of first/last login times of all Splunk u...
by tweaktubbie Communicator in Security 01-13-2017
0 3
0
3
Harishma
Hi ALL, Where in server ( conf file - NOT UI ) can I check the AD Group to Roles mapping? I can see this entire 200...
by Harishma Communicator in Security 01-13-2017
0 1
0
1
ofaura
What happens if a user belongs to several groups in the LDAP and then this user fits in several mappings, does this u...
by ofaura Path Finder in Security 01-13-2017
0 3
0
3
dpanych
I got fschange to track when a file is added/modified/deleted, but I am having trouble tracking permission changes. I...
by dpanych Communicator in Security 01-12-2017
0 4
0
4
Get Updates on the Splunk Community!

Alpha Launch: AI-Assisted Auto-Schematization for CIM

Streamlining Data Onboarding: Announcing the Alpha Release of AI-Assisted Auto-Schematization For many Splunk ...

Enterprise Security(ES) Essentials or Premier? Let's discuss Splunk ES Editions on ...

  Hi everyone, Last year at .conf25, we shared something exciting: Splunk Enterprise Security is evolving ...

[Puzzles] Solve, Learn, Repeat: Advent of Code - Day 5

Advent of CodeIn order to participate in these challenges, you will need to register with the Advent of Code ...