Security

Security
Community Activity
maniu1609
We have SHC and LDAP authentication. we have a role called "RoleA" and I want to add user "AAA" to that role. How can...
by maniu1609 Path Finder in Security 12-07-2017
0 3
0
3
brent_weaver
What are most people in the Splunksphere doing for ssl certs on their search heads? ARe you using the splunk generate...
by brent_weaver Builder in Security 12-05-2017
1 1
1
1
james190190
Hi, I have a Splunk stand alone test system that I have successfully configured to use LDAP Authentication. Everythi...
by james190190 Explorer in Security 12-05-2017
0 2
0
2
mvagionakis
Hello splunkers  I have a new issue and I'd like to have your opinion on this. I created a new custom application t...
by mvagionakis Path Finder in Security 12-05-2017
0 4
0
4
pkeller
I have a user whose search export results are capping at 10Mb ... But with the admin role I can export well beyond th...
by pkeller Contributor in Security 12-03-2017
1 2
1
2
inventsekar
Hi, SSL certificate renewal from Splunk default to self signed SSL. I would like to create an app with SSL certifica...
by SplunkTrust SplunkTrust in Security 12-01-2017
0 5
0
5
arber
Hello, I'm trying to set the cipherSuite on web.conf to allow only tls=1.2 connection [settings] enableSplunkWebSSL...
by arber Communicator in Security 11-29-2017
1 6
1
6
sidekix24
Hi, We just integrated to Splunk cloud and integrated it with our Okta SSO solution. Is there a way to logon to Spl...
by sidekix24 Path Finder in Security 11-29-2017
0 1
0
1
maffreitas
Hi all, What's the procedure to change from server.pem to CA certificate? Regards.
by maffreitas Path Finder in Security 11-29-2017
0 4
0
4
melonman
Hi, Is there any configuration that can set the maximum number of concurrent logins for SplunkWeb? e.g. I don't wan...
by melonman Motivator in Security 11-28-2017
2 6
2
6
hartfoml
I am using TFTI agent with a splunk script to get user authentication. I use the "usermapping.py" file to map the us...
by hartfoml Motivator in Security 11-27-2017
1 2
1
2
vincenp2
I want to do some housekeeping and remove any roles that have not been used for a long time (> 90 days) - is there a ...
by vincenp2 New Member in Security 11-27-2017
0 4
0
4
gmadnani
Hi, I am quite new to splunk and I was wondering if it was possible to create a real time alert for locked account f...
by gmadnani New Member in Security 11-25-2017
0 4
0
4
maffreitas
Hi all, Do you know the procedure to change the SAML Assertion X509Certificate (= server.pem) for a certificate sign...
by maffreitas Path Finder in Security 11-24-2017
0 3
0
3
dominiquevocat
I am investigating placing Splunk behind a web application firewall that handles authentication and general authoriza...
by SplunkTrust SplunkTrust in Security 11-24-2017
0 4
0
4
seilemor
Hi, from my old standalone Splunk system I'll migrate to an Splunk Cluster with the following Systems; - 1 Searchhea...
by seilemor Engager in Security 11-24-2017
0 9
0
9
DennisFFM
We switched our Splunk web authentication from LDAP to SAML. Now when I for example try to "apply cluster-bundle", I...
by DennisFFM Explorer in Security 11-23-2017
0 2
0
2
gfyhser
Hello Everyone, We are facing with an issue with our Splunk configuration : We have currently configured Splunk to a...
by gfyhser Engager in Security 11-22-2017
0 2
0
2
horsefez
Hi, I'm currently trying to restrict specific users from viewing certain panels in search app. Sadly juggling aroun...
by horsefez Motivator in Security 11-20-2017
2 3
2
3
ssackrider
created the have new CA & ssl certs, tweaked /opt/splunk/etc/system/local/web.conf to say privkeypath = $SPLUNK_HOME...
by ssackrider Explorer in Security 11-20-2017
0 3
0
3
Adam_Marx
I'm trying to get a unique list of users accessing Essbase servers and databases daily/monthly/qtrly but am strugglin...
by Adam_Marx Explorer in Security 11-20-2017
0 4
0
4
soniquella
This is confusing me greatly so forgive me if my explanation is not clear but I will try to explain: I have a dashbo...
by soniquella Path Finder in Security 11-20-2017
0 2
0
2
MikeBertelsen
I have a role assigned to an AD group that limits their access to specific events in a windows event log index. The r...
by MikeBertelsen Communicator in Security 11-17-2017
0 2
0
2
gsypsomos
When I go to Users in the Splunk web UI, there is no option/action available next to the user accounts. I have tried ...
by gsypsomos Engager in Security 11-17-2017
0 5
0
5
weiwongfaye
for example, I need to add an admin user with "can_delete" & "admin" role. In splunk doc, I can see that the followi...
by weiwongfaye Engager in Security 11-15-2017
2 3
2
3
Get Updates on the Splunk Community!

Event Series: The Agentic SOC: Trust Before Autonomy

AI is fundamentally changing security operations, but true progress requires more than just automation—it ...

Free Professional Services for .conf26 Attendees

This year at .conf26, we are doing something a little different. We are bringing the best minds from ...

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...