Splunk Enterprise Security

Whois specify a WHOIS server (*nix -h flag)

haraksin
Communicator

Similar to https://answers.splunk.com/answers/642213/nslookup-on-network-tools-app-with-specified-dns-s.html

First off, fantastic app; I'm really getting a lot of use out of specifically the prebuilt workflow actions!

I'm curious if there is any way I can specify a whois server with the command? I have a bunch of non-public data on my personal whois server that isn't getting read... I'm not sure I'm good enough to make a PR for this in the repo.

Thanks for the help!

0 Karma

haraksin
Communicator

This doesn't have to be in the search bar, it could even be in the network_tools.conf file...

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...