Splunk Search

Testing mmdb file in Splunk is there a command recommendation for risk scoring?


I am currently attempting to test the GeoIP2-Anonymous-IP.mmdb file out in Splunk.
I know we can either place it in a shared folder or create a path in limits.conf but once that is done is there a particular command to pull the risk scoring? Or should this be used as a lookup table instead?

0 Karma
Get Updates on the Splunk Community!

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...