Security

Security
Community Activity
jlkokko
I have connected my Splunk instance (on Linux) to LDAP and I get a successful bind. Additionally, I can map groups an...
by jlkokko Path Finder in Security 08-15-2019
0 12
0
12
cam343
Hello I'm trying to configure Splunk 7.3.0 (657388c7a488) with LDAP authentication but it keeps failing during the se...
by cam343 Path Finder in Security 08-15-2019
0 3
0
3
dsofoulis
Hi All, I am creating an alert in an app which I have made using the add-on builder, my app name starts with SA-. As...
by dsofoulis Path Finder in Security 08-15-2019
0 1
0
1
GSK
Hello All We are having a very hard time to clear the type of error in our Splunkd logs . We are having this issue...
by GSK Explorer in Security 08-14-2019
1 2
1
2
keldridg2
Can somebody show me a Splunk command on how to find a number of password resets and how I can display the total numb...
by keldridg2 New Member in Security 08-14-2019
0 13
0
13
kannu
Hello Splunkers , Good day I am stuck with one problem where i am monitoring .gz files using UF and getting the da...
by kannu Communicator in Security 08-14-2019
0 0
0
0
jtnormand
Can a default Power User view/check licenses.
by jtnormand New Member in Security 08-13-2019
0 1
0
1
francright29
i have seen online where people are saying that the power user exam is a open book, is this a true statement?
by francright29 New Member in Security 08-13-2019
0 2
0
2
ips_mandar
I have splunk installed on windows os in production environment and I want to know by which user splunk is installed ...
by ips_mandar Builder in Security 08-13-2019
0 2
0
2
nclancy_splunk
A number of add on's have been placed in the public domain to allow users to own and control their development. How w...
by nclancy_splunk Splunk Employee Splunk Employee in Security 08-13-2019
1 1
1
1
tb5821
I'm running nginx with the below security config. add_header X-Frame-Options "SAMEORIGIN" always; add_header X-XSS-P...
by tb5821 Communicator in Security 08-12-2019
0 1
0
1
mhurtovy
My custom search command required some credentials to work (third party lib auth) and I don't want to have it hardcod...
by mhurtovy New Member in Security 08-12-2019
0 1
0
1
JRamirezEnosys
Hi everybody, I was reading https://answers.splunk.com/answers/560188/logic-behind-geographically-improbable-access-...
by JRamirezEnosys Explorer in Security 08-08-2019
0 2
0
2
ppilla
In a clustered environment roles defined and mapped for LDAP authentication configured in Deployer (shcluster/apps) a...
by ppilla Engager in Security 08-08-2019
0 3
0
3
thund_ssi
Hi all, I would like to hide password at payload_printable field in event log from suricata json.eve. {"timestamp":...
by thund_ssi Explorer in Security 08-07-2019
0 2
0
2
jsuryaprakash
Hi All , below is my sample data. We are receiving data using key=value pairs like below. time=time1 | dest_ip=abmn...
by jsuryaprakash Path Finder in Security 08-07-2019
0 3
0
3
MikeVenable
I'm trying to make a Swimlane search to use the Authentication Datamodel, and the Privileged Authentication Dataset, ...
by MikeVenable Path Finder in Security 08-06-2019
0 6
0
6
Graham_Hanningt
I had been successfully using a custom Dockerfile to create a Docker container based on the Splunk-provided Docker im...
by Graham_Hanningt Builder in Security 08-06-2019
0 1
0
1
TobiasBoone
We have hundreds and hundreds of saved searches and dozens of Alerts. I need the power user role to be able to edit a...
by TobiasBoone Communicator in Security 08-05-2019
0 3
0
3
TobiasBoone
We have hundreds of saved searches/reports/alerts. I need the power users role to be able to edit and maintain them,...
by TobiasBoone Communicator in Security 08-05-2019
0 1
0
1
dmcintosh1972
I have created a lookup. fairly basic 2 columns, column 1 has an ID the second a search string. ID searchstr...
by dmcintosh1972 Explorer in Security 08-04-2019
0 3
0
3
lokeshtibbani
Hello, I installed the Splunk Enterprise Demo System on my local machine, However, once I click on Splunk Icon on m...
by lokeshtibbani New Member in Security 08-04-2019
0 0
0
0
cbwillh
We have On Prem Splunk Deployment and Heavy Forwarder Servers We have a requirement to use third party SSL Certificat...
by cbwillh Path Finder in Security 08-02-2019
0 1
0
1
mibrahim8
"services/search/jobs/" Splunk endpoint is replying “Unauthorized” (HTTP 401) due to the presence of the “Origin”/”Re...
by mibrahim8 Explorer in Security 08-02-2019
0 1
0
1
llovell
I am running some C# code that sends a POST request to my Splunk HTTP Event Collector at the following URL - https://...
by llovell Engager in Security 08-01-2019
1 3
1
3
Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...