Security

Security
Community Activity
Abass42
SO the other day, I was asked to ingest some data for jenkins, and Splunk has seemed to only ingest some of that data...
by Abass42 Communicator in Security 07-31-2024
0 5
0
5
syaganti
Hey, I am doing Predictive Maintenance using LLM's and I want to use Splunk to build dashboard. There I am going to i...
by syaganti Loves-to-Learn Everything in Security 07-31-2024
0 6
0
6
tuts
Scenario: The device has been compromised, and we want to understand how the breach occurred. We have extracted data ...
by tuts Path Finder in Security 07-31-2024
0 4
0
4
Hamsu
I want to use SSO and reverse proxy to skip the login page and go directly to the service app page.I found several re...
by Hamsu Loves-to-Learn Lots in Security 07-30-2024
0 0
0
0
syaganti
I finetuned LLM and I want to integrate that with Splunk. In Splunk Dashboard, I am going to include Question/Answeri...
by syaganti Loves-to-Learn Everything in Security 07-30-2024
0 0
0
0
elend
Hi there, now I'm trying some of escu's built-in rules and sending them as notable alerts and via msteams webhooks. H...
by elend Communicator in Security 07-30-2024
0 0
0
0
Marino25
Hello, I am working on a project to integrate Splunk with a LLM model.  I have created an app that search vulnerabili...
by Marino25 Observer in Security 07-30-2024
0 1
0
1
Lionel
I just realized that I lost the Admin password and I need a way to access the system, with my Admin credentials.
by Lionel Splunk Employee Splunk Employee in Security 07-23-2024
47 40
47
40
senthilkumar76
Hello, I invoke the rest webservice from Alert webhook which works fine for unsecured webservice calls. But it fails ...
by senthilkumar76 Engager in Security 07-23-2024
0 1
0
1
aruncp333
How can I create alerts based on this app data received using API? How this app https://splunkbase.splunk.com/app/696...
by aruncp333 Explorer in Security 07-22-2024
0 1
0
1
BlueSocket
I have an outside SAML system (Okta) which we are using to login to our Splunk system and we are defining indexes for...
by BlueSocket Contributor in Security 07-19-2024
0 1
0
1
Zhanali
Hi all!We deployed Splunk Cluster on OEL 8. The latest version is currently installed - 9.2.2. The vulnerability scan...
by Zhanali Path Finder in Security 07-18-2024
0 3
0
3
man03359
Hi All,Hope this message finds you well.I have installed splunk on-prem on a linux box as a splunk user and have give...
by man03359 Communicator in Security 07-18-2024
0 3
0
3
Orange_girl
Hello, I am running SPLUNK 9.1.2 on Linux and ever since I installed a new internal certificate, I am not able to run...
by Orange_girl Loves-to-Learn Everything in Security 07-17-2024
0 2
0
2
heskez
Hi there, I'd like to have a dedicated threat intel feed which goes to a custom created lookup (non-default), is that...
by heskez Engager in Security 07-16-2024
0 1
0
1
tuts
While using Splunk ES, we noticed that correlation searches were setTo an incorrect security field on the Incident Re...
by tuts Path Finder in Security 07-14-2024
0 10
0
10
Moldy
Trying to create a search that will show which capabilities a user has used within the last year.
by Moldy Engager in Security 07-12-2024
0 2
0
2
SplunkExplorer
Hi Guys, we have a doubt reagarding the user that execute Splunk on a linux environment.Until now, we have always avo...
by SplunkExplorer Contributor in Security 07-12-2024
0 2
0
2
karn
I would like to disable some local accounts temporary. I cannot find disable or suspend button in access controls set...
by karn Path Finder in Security 07-12-2024
0 3
0
3
AkhilSreek
Hey ,Just heard about CVE-2024-5535 on splunkforwarder agent 9.0.9 for Openssl 1.0.2zj , Is this a real one ? Do we n...
by AkhilSreek New Member in Security 07-11-2024
0 1
0
1
SplunkDash
Hello.I have some issues with field parsing for the CSV files using props configuration. I should be getting 11 field...
by SplunkDash Motivator in Security 07-11-2024
0 6
0
6
nabhosal
What capabilities I need to give to particular user on master node in order to view monitoring console? Right now I ...
by nabhosal New Member in Security 07-10-2024
0 9
0
9
Chiranjeev
I am having issues with action extraction on my windows addon . for example the eventcode 4624 should have an action ...
by Chiranjeev Explorer in Security 07-08-2024
0 6
0
6
sylbaea
Hello, I have a Search Head Cluster configured with SAML authentication (ADFS)... For an existing SAML group (alrea...
by sylbaea Communicator in Security 07-08-2024
0 17
0
17
tuts
Why is it that every time I set the event under (Security Domain=NETWORK) from the Content Management page, the value...
by tuts Path Finder in Security 07-08-2024
0 0
0
0
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...
Top Solution Authors