Security

Security
Community Activity
awurster
I'm using the Duo Security Splunk integration to provide 2FA on Splunk Web: https://www.duosecurity.com/docs/splunk ...
by awurster Contributor in Security 10-20-2017
0 8
0
8
CodyQuinney
Greetings, I'm utilizing Splunk Enterprise, and I'm wanting to audit whenever someone attempts to access and/or acce...
by CodyQuinney New Member in Security 10-20-2017
0 1
0
1
zhanghua_here
Dear Sir/Madam, we have developed the splunk add-on for the some vender storage array, we really want to involve the...
by zhanghua_here New Member in Security 10-20-2017
0 2
0
2
ehudb
We have configured LDAP mapping groups rules. We have some users found in "Users" page, that we cannot determine how ...
by ehudb Contributor in Security 10-18-2017
0 3
0
3
Sagar0511
May I know which firewalls logs are supported and which format it should be. In my organization there is Checkpoint f...
by Sagar0511 Explorer in Security 10-18-2017
0 2
0
2
marg224
I've tried to research this issue on my own, but, to no avail and I'm I'm at my wits end. Every so often, all my use...
by marg224 New Member in Security 10-18-2017
0 10
0
10
florencegoh
I have a listed lookup table xxx . When I run the below search. it shows no results. inputlookup xxxx|fields USERN...
by florencegoh New Member in Security 10-16-2017
0 3
0
3
julivt
Hi, how can I reset the admin password of Splunk Enterprise 6 trial version that was installed in a computer running ...
by julivt Explorer in Security 10-16-2017
1 10
1
10
kiran331
Hi Slunk starting as root user, I used chown -R splunk;splunk /opt/splunk/ and its caousing errors when I try to res...
by kiran331 Builder in Security 10-14-2017
1 2
1
2
vidhyaArumalla
I have upgraded to Splunk 7.0.0, and I am encountering with "Verification of SAML assertion using the IDP's certific...
by vidhyaArumalla Path Finder in Security 10-12-2017
0 2
0
2
daniel_splunk
Once I did a fresh install and try to login to web GU, I got "Forbidden: Strict SSO Mode". I didn't enable any SSO at...
by daniel_splunk Splunk Employee Splunk Employee in Security 10-10-2017
0 1
0
1
ansif
I have 2 licenses,one of which is using for 1 customer and other license is shared among n number of customers (MSP -...
by ansif Motivator in Security 10-10-2017
0 1
0
1
Roozbeh59
I have a saved search which sends an email to the users when a condition is met. I need to include an image in the bo...
by Roozbeh59 New Member in Security 10-10-2017
0 1
0
1
Monica7
I have a Linux server with Splunk Enterprise and splunk heavy forwarder installed. In the splunk log, I am getting th...
by Monica7 New Member in Security 10-10-2017
0 17
0
17
tomasnelson
I'm planning an environment where I want to have all my universal forwarder clients to a local splunk server and this...
by tomasnelson Explorer in Security 10-09-2017
0 2
0
2
MarcHelou
Hello there, I want to try and catch the spl query submitted on the web interface in my java application, process thi...
by MarcHelou New Member in Security 10-09-2017
0 3
0
3
paimonsoror
I was wondering if there was a clean way that I could reduce my stanzas in authorize.conf? I was hoping that similar...
by paimonsoror Builder in Security 10-06-2017
0 5
0
5
skoelpin
I'm wanting to disable real-time searches for the roles 'user' and power-user'. For the user role, I removed most of ...
by SplunkTrust SplunkTrust in Security 10-04-2017
1 2
1
2
johnca00
Hello - I have a logging event like this one. We are searching on "Threshold Exceeded" AND "225" 9/26/17 13:45:18...
by johnca00 New Member in Security 10-03-2017
0 1
0
1
pfabrizi
Just want to confirm process: 1. Create private key on splunk web 2. Create CSR from private 3. Pass to my CA authori...
by pfabrizi Path Finder in Security 10-03-2017
1 1
1
1
reach2tushar
Splunk 6.3 forwarder is not sending data using SSL while Splunk 6.6 is working fine with the same settings. Followi...
by reach2tushar Explorer in Security 10-02-2017
0 3
0
3
oda
Sorry about the rudimentary question. I am building an environment referring to the following site. https://www.splun...
by oda Communicator in Security 10-02-2017
0 3
0
3
eranday
Hi, i wish to provide a Splunk application to our customers. But I do not want to provide them with 'search' capabili...
by eranday New Member in Security 10-01-2017
0 1
0
1
mouryagalla
I am using Splunk 6.6.2 When I ran search in Splunk Web for index for more than 30 days timeline "index="indextest" ...
by mouryagalla Explorer in Security 09-29-2017
1 4
1
4
frizzoS3
Hi I have run the following search ( Endpoint - Malware Daily Count - Context Gen) verified from a couple of differ...
by frizzoS3 New Member in Security 09-29-2017
0 2
0
2
Get Updates on the Splunk Community!

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...

SplunkTrust Application Period is Officially OPEN!

It's that time, folks! The application/nomination period for the 2026-2027 SplunkTrust is officially open. If ...