Security

Security
Community Activity
Clecimar
Hi everyone, I need to remover users that leave the company. I´ve already remove them from company AD, but the remain...
by Clecimar Explorer in Security 10-29-2024
1 10
1
10
brreeves_splunk
I originally configured my SAML authentication with a NameID that was a GUID. We noticed that they were randomly gene...
by brreeves_splunk Splunk Employee Splunk Employee in Security 10-28-2024
0 11
0
11
m_tanaka
In my environment, palo alto (proxy) logs are being stored into Splunk.I want to know what kind of operation on a ser...
by m_tanaka Explorer in Security 10-28-2024
1 4
1
4
MOR09
Hey.I'm trying to add the "Drilldown" and "Contributing Events" to our Splunk notables.I have added to this parameter...
by MOR09 Engager in Security 10-16-2024
1 1
1
1
yangban
Hi, all the splunk gurus out there. Recently we added a new role and we couldn't see the users with the role when lo...
by yangban Explorer in Security 10-14-2024
1 7
1
7
TiagoTLD3
Hello! Since 7.3.0 I'm seeing the reload process for assets and identities failing frequently. Any ideas? RROR pid=20...
by TiagoTLD3 Engager in Security 10-10-2024
0 1
0
1
darwincharle
Hola, hoy solicito su ayuda,  Dado que descargue la VMWARE de Splunt para probarlo y ver el funcionamiento, pero no h...
by darwincharle New Member in Security 10-09-2024
0 1
0
1
super_edition
Hello Everyone,I have following splunk query, which I am trying to build for dropdown in dashboard. Basically 2 dropd...
by super_edition Path Finder in Security 10-07-2024
0 5
0
5
SplunkDash
Hello,Is it possible to create HEC Token from the CLI  of Linux host? Any recommendations how to create HEC token fro...
by SplunkDash Motivator in Security 10-03-2024
0 3
0
3
gschleusener
Hi,I can see Splunk is vulnerable to openssl 1.0.2zk, I've applied the latest 9.2.2 on Splunk Enterprise and the Univ...
by gschleusener Engager in Security 10-02-2024
1 4
1
4
dude49
My linux_audit logs increased after updating apps and causing license manager to go over limit. Anyone know a fix for...
by dude49 Explorer in Security 09-30-2024
0 4
0
4
Siddharthnegi
Hi i want to extract highlighted partSep 24 10:43:25 10.82.10.245 [S=217] [BID=d57afa:30] RAISE-ALARM:acProxyConnecti...
by Siddharthnegi Contributor in Security 09-28-2024
0 2
0
2
rupert
After i updated tha add-on to 6.3.x I am not able to create or update account setting under account type Tenable.sc c...
by rupert Engager in Security 09-26-2024
0 2
0
2
tsondo
Greetings, We started seeing OPSNSSL vulnerabilities on all of our Splunk forwarders and the main engine this week. T...
by tsondo Explorer in Security 09-26-2024
0 23
0
23
scr1biddies
Hi, this is my 1st post, I'm a newbie splunkers.I have a case from my clients so, the splunk is running with LB follo...
by scr1biddies Loves-to-Learn Lots in Security 09-26-2024
0 8
0
8
Siddharthnegi
Hi I want to extract highlighted partSep 24 10:43:25 10.82.10.245 [S=217] [BID=d57afa:30] RAISE-ALARM:acProxyConnecti...
by Siddharthnegi Contributor in Security 09-24-2024
0 2
0
2
ejohns
I'm trying to build a Local Attack Range but it fails when it tries to restart the splunk.service. The Splunk instanc...
by ejohns Loves-to-Learn in Security 09-23-2024
0 3
0
3
spisiakmi
Hi can anybody help with this problem, please? source1: lookup Tab (lookup.csv) att1 att2 att3 F1 1100 12.09.2024 F...
by spisiakmi Contributor in Security 09-19-2024
0 4
0
4
arunkuriakose
We have two separate splunk instances with ES (standalone not clustered) . Consider it as a HO DR when i try to move ...
by arunkuriakose Explorer in Security 09-18-2024
0 1
0
1
vnguyen46
Hi - I just installed Splunk latest version 7.3.2. It went well, but from the website, I can't login with admin/chang...
by vnguyen46 Contributor in Security 09-14-2024
0 4
0
4
gpinedo
How does Splunk AI assistant keep customer data confidential?
by gpinedo Splunk Employee Splunk Employee in Security 09-12-2024
0 2
0
2
jmartens
We have enabled Microsoft SAML for Splunk and out splunkd.log seems to be flooded with warnings like this:WARN UserMa...
by jmartens Path Finder in Security 09-09-2024
0 8
0
8
tringener
After creating a new LDAP strategy and entering all required information I get an error when saving.Entry not saved, ...
by tringener Explorer in Security 09-03-2024
0 2
0
2
VijaySrrie
Hi Team, We could see latency in logsLog ingestion via - syslog Network devices --> Syslog server --> splunk Using be...
by VijaySrrie Builder in Security 08-28-2024
0 2
0
2
hmallett
I have been using Splunk for a few months, and now have a number of eventtypes defined. However, they've all got priv...
by hmallett Path Finder in Security 08-22-2024
2 3
2
3
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

Data Management Digest – May 2026

Welcome to the May 2026 edition of Data Management Digest!   As your trusted partner in data innovation, the ...