Splunk Search

Capture Connected Devices

itsmevic
Communicator

Does anyone have any SPL that looks at ALL connected network devices? For example, John Doe decides he wants to connect his own personal laptop to the network and or he tries to connect to a VDI session using that same laptop. I'd like to see that type of activity via a query in Splunk. Any help with this is greatly appreciated.

Tags (1)
0 Karma
Get Updates on the Splunk Community!

New Year, New Changes for Splunk Certifications

As we embrace a new year, we’re making a small but important update to the Splunk Certification ...

[Puzzles] Solve, Learn, Repeat: Unmerging HTML Tables

[Puzzles] Solve, Learn, Repeat: Unmerging HTML TablesFor a previous puzzle, I needed some sample data, and ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...