Splunk Search

Splunk Fundamentals Module 5 Lab

Floyd22
Engager

In Module 5 Lab #8, I am asked to perform a search using the "fail* AND password" command over ALL TIME. The search returned "NO results found" in the previous step I performed the search "error or fail" over ALL TIME. and that returned the response that was expected. Why is the task from #8 not returning the expected results?

0 Karma
Get Updates on the Splunk Community!

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

 Prepare to elevate your security operations with the powerful upgrade to Splunk Enterprise Security 8.x! This ...

Get Early Access to AI Playbook Authoring: Apply for the Alpha Private Preview ...

Passionate about security automation? Apply now to our AI Playbook Authoring Alpha private preview ...

Reduce and Transform Your Firewall Data with Splunk Data Management

Managing high-volume firewall data has always been a challenge. Noisy events and verbose traffic logs often ...