Splunk Search

Capturing Configuration changes to switches, firewalls etc.

waJesu
Path Finder

I am new to Splunk administration, and I need a query that captures changes to configuration of switches, firewalls, routers etc, in my environment

0 Karma

PickleRick
SplunkTrust
SplunkTrust

Splunk is _not_ an active monitoring solution. That's what you use - for example - rancid or some commercial tools for. But if you get logs from such tool (or have audit logs from your appliances telling you that change happened), you can search from that data. But it will depend on what data you have.

waJesu
Path Finder

It's the query to search those logs that I am looking for.

 

0 Karma

PickleRick
SplunkTrust
SplunkTrust

The "query" (or in Splunk terminology - search) you're looking for will depend on what data you have indexed in your Splunk.

0 Karma
Get Updates on the Splunk Community!

Splunk Observability Cloud's AI Assistant in Action Series: Auditing Compliance and ...

This is the third post in the Splunk Observability Cloud’s AI Assistant in Action series that digs into how to ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

What You Read The Most: Splunk Lantern’s Most Popular Articles!

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...