Splunk Enterprise Security

Splunk Enterprise Security
Community Activity
snigdhasaxena
I have been trying to customize the color of bars in a Bar chart as per the field values. I have tried using eval/if...
by snigdhasaxena Communicator in Splunk Enterprise Security 10-03-2018
0 2
0
2
BlueSocket
Dear Splunk, I just went to the Splunk TA for Oracle app page and it said that it was CIM-compatible and it is in th...
by BlueSocket Contributor in Splunk Enterprise Security 10-02-2018
0 0
0
0
chrischen2018
Dynamic threshold for the Concept: min, low, high, extreme. Are there numerical values in each of the semantic terms?...
by chrischen2018 New Member in Splunk Enterprise Security 09-30-2018
0 0
0
0
CodyQ
Greetings, I'm trying to create a table depicting something similar to the following: Notabel Arrived Urgency...
by CodyQ Explorer in Splunk Enterprise Security 09-29-2018
0 5
0
5
amulay26
We are implementing the Splunk PCI app and the indexer is supposed to be in PCI app and report to the PCI app. Howev...
by amulay26 Path Finder in Splunk Enterprise Security 09-27-2018
0 1
0
1
lewisedmunds
Hi, I was under the impression that the certified user exam was free to take, but I am being charge $150 to sit it,...
by lewisedmunds New Member in Splunk Enterprise Security 09-27-2018
0 2
0
2
GeoCouloute
Hello Everyone, Can someone please show me the appropriate query that I need to run to get a list of web traffic for...
by GeoCouloute Engager in Splunk Enterprise Security 09-27-2018
0 1
0
1
todd_r_martin21
I have an Enterprise Security search head with 44 Physical Cores and 32GB RAM( reporting as 30.92GB) I am getting t...
by todd_r_martin21 Explorer in Splunk Enterprise Security 09-26-2018
0 0
0
0
samyool36
I have an alert set up in my Splunk Enterprise Security environment that is set to trigger when we receive a notable ...
by samyool36 Explorer in Splunk Enterprise Security 09-26-2018
0 5
0
5
ranjitbrhm1
Good day everyone. I have a query. I have configured all the Enterprise Security threat intelligence to download vi...
by ranjitbrhm1 Communicator in Splunk Enterprise Security 09-26-2018
0 1
0
1
ehowardl3
I have identity information I am pulling from two different sources in two different lookup tables. One lookup table ...
by ehowardl3 Path Finder in Splunk Enterprise Security 09-25-2018
0 2
0
2
Tylerdygert
Hello, I am trying to create a dashboard for Splunk Enterprise Security to track incident response. I have a search ...
by Tylerdygert Path Finder in Splunk Enterprise Security 09-25-2018
0 4
0
4
Tylerdygert
Cisco ASA Regex filtering needed Hello Splunk community, I am in need of some regex help. We have been receiving a...
by Tylerdygert Path Finder in Splunk Enterprise Security 09-25-2018
0 2
0
2
deastman
I'm currently looking for others input on how they ingest EfficentIP data sources. Does anyone actively ingest Effic...
by deastman Path Finder in Splunk Enterprise Security 09-25-2018
0 0
0
0
kokanne
I need to make a report once a month that indicates the trend between the succesful / unsuccesful log-ins on the netw...
by kokanne Communicator in Splunk Enterprise Security 09-24-2018
1 2
1
2
bhimija
Is it possible to change default status value from "All" to New & "In Progress" via GUI in the Incident Review dashbo...
by bhimija New Member in Splunk Enterprise Security 09-24-2018
0 2
0
2
johnny_goya
Hi everyone, I'm trying to create a search that i can display the notable information. But i have a problema, when i...
by johnny_goya Explorer in Splunk Enterprise Security 09-22-2018
0 1
0
1
bcyates
We are attempting to bring data in from a CMDB to generate our Assets list for Splunk. We have established the conne...
by bcyates Communicator in Splunk Enterprise Security 09-21-2018
0 0
0
0
samyool36
I am attempting to run a search which matches specific domain names. In this search, I am using a lookup file to whit...
by samyool36 Explorer in Splunk Enterprise Security 09-21-2018
0 1
0
1
SunilMaharishi
i have one csv file which contains device name location data , i need to get count of all the device name location wi...
by SunilMaharishi Path Finder in Splunk Enterprise Security 09-20-2018
0 3
0
3
krhines410
I am trying to be an admin for a separate work project. But our original admin has been out of town for a few weeks, ...
by krhines410 New Member in Splunk Enterprise Security 09-19-2018
0 12
0
12
psmaan
I have set up an alert using a "Saved search" in Splunk Enterprise Security. I am throttling alerts for an hour when ...
by psmaan New Member in Splunk Enterprise Security 09-19-2018
0 2
0
2
pablo_splunk_es
Why can't the Splunk AWS Add-On consume Guardduty events using Kinesis like it does for VPC Flow Logs without the nee...
by pablo_splunk_es New Member in Splunk Enterprise Security 09-18-2018
0 0
0
0
AbubakarShahid
Hello all, I am working in Splunk ES and i would like to add the capability of getting a match on my URL list. I ...
by AbubakarShahid New Member in Splunk Enterprise Security 09-18-2018
0 0
0
0
gmchenry
I am running Splunk ES v4.7.2 and upgraded it, along with the rest of my servers to Splunk Enterprise v7.1.2. After ...
by gmchenry Explorer in Splunk Enterprise Security 09-18-2018
0 1
0
1
Get Updates on the Splunk Community!

Simplifying the Analyst Experience with Finding-based Detections

    Splunk invites you to an engaging Tech Talk focused on streamlining security operations with ...

[Puzzles] Solve, Learn, Repeat: Word Search

This challenge was first posted on Slack #puzzles channelThis puzzle is based on a letter grid containing ...

[Puzzles] Solve, Learn, Repeat: Advent of Code - Day 4

Advent of CodeIn order to participate in these challenges, you will need to register with the Advent of Code ...