How Can I add a subnet or CIDR to ip intel threat intelligence lookup?
Hi @sabaKhadivi hope you resolved this issue.. if not, maybe, check this..
https://docs.splunk.com/Documentation/ES/6.3.0/Admin/Includedthreatintelsources