Security

Security
Community Activity
revanthammineni
Hi Splunkers!I'm actually working on root privilege escalations with linux logs and I have limited experience with it...
by revanthammineni Path Finder in Security 10-19-2020
0 1
0
1
vinothn
Hi Team,We are trying to get data on boarded to splunk security essentials. We do not have a clear visibility to the ...
by vinothn Path Finder in Security 10-19-2020
1 2
1
2
msplunk33
I have created a role and provided the access to indexes for a user. However the user can not search on the index. Ot...
by msplunk33 Path Finder in Security 10-16-2020
0 1
0
1
hsharry
I have renamed passwd.bkg to passwd and restart splunk but still not able to reset my password using admin and change...
by hsharry New Member in Security 10-16-2020
0 14
0
14
sushainmagotra
Hi all,So, we have a Splunk Enterprise running on an ec2 instance and we want to ssl secure the splunk web url.So for...
by sushainmagotra Loves-to-Learn Lots in Security 10-15-2020
0 0
0
0
jaibalaraman
Excuse my knowledge with Splunk how do track user device details Mobile ( Device model , OS version )Browser ( Browse...
by jaibalaraman Path Finder in Security 10-13-2020
0 2
0
2
gjanders
As per the various other systemd related answers posts: Is there a systemd unit file for Splunk? Is there a systemd u...
by SplunkTrust SplunkTrust in Security 10-12-2020
6 9
6
9
jlum
Does Splunk Cloud 8.0.x.x support two factor authentication?  If so, what are the options?  Is there a way to access ...
by jlum New Member in Security 10-12-2020
0 1
0
1
splunkgk
Hi, I am configuring Splunk access control with SAML onelogin and I have uploaded the onelogin IdP meta data file to...
by splunkgk Path Finder in Security 10-09-2020
1 2
1
2
KaS
Hello,Normal users should see a subset of a field extraction, small set of higher privilled users should be able to s...
by KaS New Member in Security 10-09-2020
0 3
0
3
alex_k
Hi Everyone!I don't understand, if use SAML authentication I don't access API !?I keep getting 404. For any request t...
by alex_k New Member in Security 10-08-2020
0 0
0
0
itsmevic
Hello, I feel super dumb asking this question, but how does one log out of Splunk when there isn't an option under m...
by itsmevic Communicator in Security 10-07-2020
0 4
0
4
ps
Hi,I am using Splunk Enterprise Version:8.0.1I bunch of indexes and roles for users. I created a role that has only o...
by ps Explorer in Security 10-07-2020
0 5
0
5
jaibalaraman
Hi I tried the below SPL query which is not working , can anyone help me index=aws  sourcetype=* earliest=-30d user="...
by jaibalaraman Path Finder in Security 10-05-2020
0 4
0
4
gsabhay77
I ran the latest Splunk's AppInspect API 2.1.0 using the Postman for the Splunk app we are developing. We have a setu...
by gsabhay77 Explorer in Security 10-05-2020
0 7
0
7
SierraX
Hi Splunkers, this request comes from a Customer but I couldn't find an answer. His Idea was to use just a bunch of ...
by SierraX Communicator in Security 10-05-2020
0 2
0
2
Divya
Why i am getting "Error in 'script': Getinfo probe failed for external search command 'predict'. " error while execut...
by Divya Loves-to-Learn Lots in Security 10-04-2020
0 2
0
2
waJesu
I am very new to Splunk administration. Would anyone help me with a simple search to check if a particular device is ...
by waJesu Path Finder in Security 10-02-2020
0 3
0
3
tkelleyusa
The "edit_http_ops" addition to permission settings was recommended to help with irregular API ingestion issues. Is a...
by tkelleyusa New Member in Security 09-24-2020
0 0
0
0
marga
Hello,I need to correlate forti_action to action field according to cim model . Some values are missing :Example : Pa...
by marga New Member in Security 09-23-2020
0 0
0
0
lastangel32
Hican y help me to create research for fortigate VPN User?statistics witch user, duration vpn and total gbdefault spl...
by lastangel32 Loves-to-Learn Lots in Security 09-22-2020
0 0
0
0
NirajMarkandey
I have Splunk Enterprise setup with SSO enabled with Okta. Provisioning of users is also done by Okta. I want to gene...
by NirajMarkandey New Member in Security 09-21-2020
0 0
0
0
eegiievol
We are unable to see our notable events when correlation search criteria met. Upon investigation, found out that nota...
by eegiievol Explorer in Security 09-20-2020
0 2
0
2
2012sluo
Hi I have splunk installed and can access everything in the terminal. I got to the ./splunk start part, and after rea...
by 2012sluo Engager in Security 09-20-2020
2 3
2
3
chris94089
So the Deployment Sever's job is to hold a bunch of apps, some of which contain outputs.conf to send to Deployment Cl...
by chris94089 Path Finder in Security 09-20-2020
0 1
0
1
Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...