Splunk Search

How can we find dns long sessions?

Woodpecker
Path Finder

Hi,

Can someone please help me with a query to find Long DNS sessions? 

 

Labels (1)
0 Karma

yuanliu
SplunkTrust
SplunkTrust

For anyone to help, you will need to give sample data, or at least let people know which data log your Splunk is searching. And what is "long"?  What defines a "session" in your data? (Keep in mind that this is a Splunk forum.  Not everyone deals with the same set of data or even remotely familiar with your application.)

0 Karma
Get Updates on the Splunk Community!

Monitoring Postgres with OpenTelemetry

Behind every business-critical application, you’ll find databases. These behind-the-scenes stores power ...

Mastering Synthetic Browser Testing: Pro Tips to Keep Your Web App Running Smoothly

To start, if you're new to synthetic monitoring, I recommend exploring this synthetic monitoring overview. In ...

Splunk Edge Processor | Popular Use Cases to Get Started with Edge Processor

Splunk Edge Processor offers more efficient, flexible data transformation – helping you reduce noise, control ...