Security

Security
Community Activity
nick405060
I have a dashboard that loadjobs a scheduled savedsearch. I needed to grant dashboard access to a new role, so I adde...
by nick405060 Motivator in Security 09-28-2021
0 5
0
5
AllanMarcus
I just installed Splunk Enterprise on my Mac. Started Splunk and got into Splunk Web UI. When I click the large Plus...
by AllanMarcus Explorer in Security 09-27-2021
0 4
0
4
HumanPrinter
We are running a Splunk cluster (version 8.1.2) and trying to secure the forwarding from the Universal Forwarders (al...
by HumanPrinter Explorer in Security 09-27-2021
0 3
0
3
khanlarloo
hi we had the user with name user1, after some days the user was hidden in settings>users, but still user can login t...
by khanlarloo Explorer in Security 09-26-2021
0 1
0
1
aiyda
I'm taking the Splunk Fundamentals Part 1 the free training. On Module 13 Lab, I see a warning that says "This lab wi...
by aiyda New Member in Security 09-24-2021
0 3
0
3
SamHTexas
I need to see if the default encryption between Splunk components be checked via GUI? Am talking about the SSL encryp...
by SamHTexas Builder in Security 09-22-2021
0 0
0
0
daniel333
All, Just noticed when Splunk UF installs it creates a user "splunk" with a login shell /bin/bash in /etc/passwd. e.g...
by daniel333 Builder in Security 09-22-2021
0 4
0
4
damucka
Hello,We are using the Tenable Infrastructure Vulnerability scanner to scan regularly our complete infrastructure. Te...
by damucka Builder in Security 09-22-2021
1 1
1
1
imarks004
I was wondering if it is really necessary for the Splunk account to have a shell (/bin/bash)? I have set up a couple...
by imarks004 Path Finder in Security 09-22-2021
1 3
1
3
Paul
When I create a role and assign it to a user in Splunk Enterprise, I have successfully tested that the user can only ...
by Paul Explorer in Security 09-17-2021
0 3
0
3
damucka
Hello,I have an issue with the security of the Splunk installation. Actually it is not about Splunk itself - after ea...
by damucka Builder in Security 09-17-2021
0 3
0
3
rahul2gupta
Hi,Is there any method to get the list of all the universal forwarder that is being forwarded to Indexer?Regards,Rahu...
by rahul2gupta Path Finder in Security 09-17-2021
0 3
0
3
islam
Hi,how can we send ES notable events from cluster setup to a stand alone indexer.
by islam Explorer in Security 09-15-2021
0 3
0
3
patelDip
Auditors are looking for updated AOC for Splunk. Where can we find this document from Splunk?
by patelDip New Member in Security 09-14-2021
0 0
0
0
repplikaFK
Hi!,I have recently deleted an user. I should not have done that....Can I restore it?If anyone has any ideas I'd appr...
by repplikaFK Engager in Security 09-14-2021
0 2
0
2
or1515
Hey splunkers, How can I correlate rules in Splunk from 2 data sources? The events for example:OKTA - privilege grant...
by or1515 Loves-to-Learn Everything in Security 09-11-2021
0 10
0
10
or1515
Hey splunkers,How do I create a new field in splunk? If I have a windows security log with "User" field and I want to...
by or1515 Loves-to-Learn Everything in Security 09-09-2021
0 3
0
3
itsmevic
Hello Splunkers!      I wanted to ask if anyone out there has some SPL that I can use as an alert to detect failed an...
by itsmevic Communicator in Security 09-07-2021
0 1
0
1
jonaclough
We currently operate on-prem and are considering moving to Splunk Cloud.A potential blocker is the manual process req...
by jonaclough Path Finder in Security 09-06-2021
0 1
0
1
Pradeep
Hi,I am configuring SSL encryption b/w agent and indexer/deployment server. But passwords placed under deployment-app...
by Pradeep Observer in Security 09-03-2021
0 0
0
0
vin_ven27
We are using DBconnect with JTDS driver. When we enabling the connection in DBconnect we are seeing the below script ...
by vin_ven27 Explorer in Security 09-02-2021
0 0
0
0
pl2345
Running Splunk Enterprise 8.0.0 on an internal network.I went away on vacation for a few weeks with Splunk working fi...
by pl2345 Path Finder in Security 09-02-2021
1 4
1
4
wgawhh5hbnht
How are you tuning ES to your environment? Are you overwriting the correlation searches that ship with ES or are you ...
by wgawhh5hbnht Communicator in Security 08-31-2021
0 1
0
1
priyakvs
Hi y’all. I recently installed splunk enterprise AMI instance in EC2. Unfortunately, I am unable to access with the d...
by priyakvs New Member in Security 08-27-2021
0 0
0
0
cajunitalian
How can I set up LDAP for all my Splunk servers at one time? Am I going to have to set this up individually on each ...
by cajunitalian Engager in Security 08-27-2021
1 4
1
4
Get Updates on the Splunk Community!

The OpenTelemetry Certified Associate (OTCA) Exam

What’s this OTCA exam? The Linux Foundation offers the OpenTelemetry Certified Associate (OTCA) credential to ...

From Manual to Agentic: Level Up Your SOC at Cisco Live

Welcome to the Era of the Agentic SOC   Are you tired of being a manual alert responder? The security ...

Splunk Classroom Chronicles: Training Tales and Testimonials (Episode 4)

Welcome back to Splunk Classroom Chronicles, our ongoing series where we shine a light on what really happens ...
Top Solution Authors