Security

Security
Community Activity
daniel_augustyn
What is the best way to collect logs from the devices that I can't install Universal Forwarders on? Should I use the ...
by daniel_augustyn Contributor in Security 10-26-2015
0 2
0
2
landen99
I want to search Splunk logs in order to see changes to Splunk Objects by user. An example would be to see an event ...
by landen99 Motivator in Security 10-26-2015
3 5
3
5
pjohnson1
I have 2 events from 2 different systems which are displaying slightly different authentication sucessful messages (d...
by pjohnson1 Path Finder in Security 10-22-2015
0 1
0
1
pjb2160
Hello, I am looking to generate a report which indicates the current roles and for each role: What indexes the role...
by pjb2160 Path Finder in Security 10-22-2015
0 1
0
1
dkeck
Hello, If anybody could tell me what type of AES splunk is using? (-128,-192,-256 bit?) Would be great. Thank you
by dkeck Influencer in Security 10-21-2015
0 2
0
2
pjohnson1
Is it possible to have eventtypes for user authentication with different events? I am working on a TA for Aruba user...
by pjohnson1 Path Finder in Security 10-19-2015
0 2
0
2
cjaramilloc
Hi I was wondering, if someone could access the index directory and make some changes in a journal.gz, what is it go...
by cjaramilloc Explorer in Security 10-18-2015
0 1
0
1
robertlight
I have found that the capability 'edit_scripted' is required in order to use "runshellscript" This apparently is und...
by robertlight Path Finder in Security 10-14-2015
0 4
0
4
OldManEd
I just loaded a brand new instance of Splunk Enterprise 6.3. I also loaded the Splunk S.o.S 3.2.1 app. While monito...
by OldManEd Builder in Security 10-13-2015
0 7
0
7
venkat_d
Is it possible to grant access to a splunk dashboard without any credentials (or) by default login as guest/guest use...
by venkat_d New Member in Security 10-13-2015
0 3
0
3
imrancharania
I have checked the firewall connections and i am able to connect to the apple push notification service. The only thi...
by imrancharania New Member in Security 10-09-2015
0 2
0
2
JeremeyWise
Building my first Splunk cluster for lab. All hosts CentOS6 with full AD (kerberos) integration but wanting to add A...
by JeremeyWise Explorer in Security 10-07-2015
1 4
1
4
HeinzWaescher
Hi, does the app permission always overrule all other permissions for content created in that app? Let's say there ...
by HeinzWaescher Motivator in Security 10-07-2015
0 2
0
2
mendesjo
Ok, I'm new to Splunk and new to unix.. I never thought I would miss Windows server but I do. Anyway, I'm trying to ...
by mendesjo Path Finder in Security 10-06-2015
0 3
0
3
wildbill4
In an older version of Splunk I was able to change the "logo-mrsparkle.png" file to my logo and restart splunk and my...
by wildbill4 Path Finder in Security 10-06-2015
2 9
2
9
mkolkebeck
The DMC general setup does not work if you delete or rename the admin account (e.g. via user-seed.conf). http://docs...
by mkolkebeck Path Finder in Security 10-05-2015
1 7
1
7
tweaktubbie
Having a Splunk server with DB Connect 1 on a heavy forwarder (not a searchhead or indexer), I intend to give DBA's F...
by tweaktubbie Communicator in Security 10-04-2015
0 1
0
1
ladwinster
Hi everyone, I'm trying to run a query in the app Splunk DB Connect but it always returns : Error in 'script': Geti...
by ladwinster Engager in Security 10-02-2015
3 4
3
4
RicoSuave
Haros my friends! I would like to anonymize sensitive data at search-time but, only for certain roles and without ha...
by RicoSuave Builder in Security 10-02-2015
4 2
4
2
asofo
Has anyone successfully indexed access data from a swipe card entry system? Specifically Honeywell. I understand this...
by asofo Path Finder in Security 10-02-2015
1 4
1
4
lassel
In a HTML dashboard, how can I determine the username of the current user? I tried this, but it seems like there sho...
by lassel Communicator in Security 10-01-2015
3 4
3
4
polpotpi
When the Splunkd service is started, I receive the above error from the CEPA HTTP Server. I am on a Windows 2008 mac...
by polpotpi Engager in Security 09-30-2015
1 1
1
1
shaileshmali
1) I created private key SDWSearch.key 2) Removed password is removed from key 3) Generated SDWSearch csr 4) Uplo...
by shaileshmali Path Finder in Security 09-28-2015
0 2
0
2
nmssplunkteam
Due to some old equipment in our environment, we need to use TLS 1.0 or 1.1 for our AD authentication. Splunk seems ...
by nmssplunkteam New Member in Security 09-28-2015
0 1
0
1
marco_sulla
I followed the instructions in this answer (and their comments too) but I can't copy the user's roles from one Splunk...
by marco_sulla Path Finder in Security 09-28-2015
0 5
0
5
Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...