Security

Security
Community Activity
ryjones13
Good Morning- We currently have Splunk installed in house but not overly configured. Each week, I take a our securi...
by ryjones13 New Member in Security 03-22-2013
0 4
0
4
kwclark
Search head is Linux and search peer is Windows Server 2008. Using the web interface Splunk Manager to connect to sea...
by kwclark New Member in Security 03-21-2013
0 3
0
3
jgauthier
Greetings, I've set up LDAP authentication for my splunk installation. I would like to be able to add users specifi...
by jgauthier Contributor in Security 03-21-2013
0 10
0
10
seanlon11
Currently, when any of my users create a saved search, they are private. How can I alter that to be public? Also...
by seanlon11 Path Finder in Security 03-21-2013
3 8
3
8
aswanda
I am trying to correlate the field src_IP between all my IDS alerts (sourcetype=estreamer) and OSINT data I am pullin...
by aswanda Engager in Security 03-14-2013
0 3
0
3
gschmitz
Hi all, is there a way to use my own SSL certificates for communication between indexers, forwarders, deployment clie...
by gschmitz Path Finder in Security 03-10-2013
0 3
0
3
a212830
Hi, I usually use the sample_app template when creating a new app. How do I delete the searches that get installed w...
by a212830 Champion in Security 03-09-2013
0 1
0
1
nik_splunk
Good morning all. I'm trying to develop an application using splunk 4.1.1 In order to verify the results of a searc...
by nik_splunk Path Finder in Security 03-07-2013
0 1
0
1
78triumph
I need a user in splunk that does not get automatically logged out of splunk? We are establishing a Monitoring Dashbo...
by 78triumph New Member in Security 03-06-2013
0 1
0
1
mzorzi
I want to integrate Splunk with SSO, and then I'd need to remove the Login page and the Logout bottom at the top righ...
by mzorzi Splunk Employee Splunk Employee in Security 03-06-2013
4 2
4
2
bbegyspotlite
So I configured a universal forwarder on one of our production web servers, telling it to go forward windows logs to ...
by bbegyspotlite Engager in Security 03-06-2013
0 1
0
1
sdwilkerson
Does anyone have experience or code they can share configuring Splunk to authenticate via radiusScripted to Radius bu...
by sdwilkerson Contributor in Security 03-04-2013
1 4
1
4
leadmagnet
Just installed splunk and have it indexing several servers event logs. Nifty!  Thought it would be nice to have it ...
by leadmagnet New Member in Security 03-04-2013
0 2
0
2
jalfrey
I'm setting up logging with Sonicwall firewalls. They support syslog. Do I send it to syslog on a linux system or sen...
by jalfrey Communicator in Security 03-01-2013
0 3
0
3
megancarney
When I do Home->Add Data->From Files and Directories->Skip Preview or Home->Add Data->From Files and Directories->Pre...
by megancarney Explorer in Security 02-27-2013
4 8
4
8
LASSEENERSEN
We are using Splunk Authorization and I found 67 unexpected users in "Manager » Access controls » Users" list. Not on...
by LASSEENERSEN New Member in Security 02-25-2013
0 2
0
2
tsunamii
Splunk version 4.3.3 on Windows Unable to log into splunk web (UI), and got the following error instead: Splunkd da...
by tsunamii Path Finder in Security 02-23-2013
1 2
1
2
bhavna_jain
Hi, What capabilities are needed for a non admin role to create their own index. I have tried with edit_index but its...
by bhavna_jain Engager in Security 02-22-2013
0 3
0
3
a212830
Hi, I just configured one of my indexers to my license master, and now I'm getting the following error: Unable to d...
by a212830 Champion in Security 02-20-2013
0 2
0
2
pdash
We have two search heads that are in big ip pool. One of them is master. When doing a license alert set up, it gets s...
by pdash Path Finder in Security 02-19-2013
0 1
0
1
mship
Trying to create a custom warning banner on login page for splunk 5.0.1. Tried editing the web.conf file in /etc/syst...
by mship Path Finder in Security 02-18-2013
0 1
0
1
sieutruc
Hello, I have a domain admin account created on Windows 2000, and added that domain admin user into local administra...
by sieutruc Contributor in Security 02-15-2013
0 1
0
1
tomdchi
The TA-XS60-Server.log has tons of errors in it and nothing is showing on the dashboard. Anyone have an idea on how t...
by tomdchi New Member in Security 02-14-2013
0 5
0
5
wrangler2x
We are sharing 100 megabytes of our 2 gigabytes daily license with another system that monitors an Apache web log. Th...
by wrangler2x Motivator in Security 02-12-2013
1 3
1
3
enowacki
Is there a way to require a Client Certificate from client browser to SplunkWeb? How would this look? I have been a...
by enowacki Engager in Security 02-12-2013
2 3
2
3
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...