Splunk Search

Capturing Configuration changes to switches, firewalls etc.

waJesu
Path Finder

I am new to Splunk administration, and I need a query that captures changes to configuration of switches, firewalls, routers etc, in my environment

Labels (1)
0 Karma

PickleRick
SplunkTrust
SplunkTrust

Splunk is _not_ an active monitoring solution. That's what you use - for example - rancid or some commercial tools for. But if you get logs from such tool (or have audit logs from your appliances telling you that change happened), you can search from that data. But it will depend on what data you have.

waJesu
Path Finder

It's the query to search those logs that I am looking for.

 

0 Karma

PickleRick
SplunkTrust
SplunkTrust

The "query" (or in Splunk terminology - search) you're looking for will depend on what data you have indexed in your Splunk.

0 Karma
Get Updates on the Splunk Community!

Developer Spotlight with Paul Stout

Welcome to our very first developer spotlight release series where we'll feature some awesome Splunk ...

State of Splunk Careers 2024: Maximizing Career Outcomes and the Continued Value of ...

For the past four years, Splunk has partnered with Enterprise Strategy Group to conduct a survey that gauges ...

Data-Driven Success: Splunk & Financial Services

Splunk streamlines the process of extracting insights from large volumes of data. In this fast-paced world, ...