- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi everyone i want to ask where can i get latest update for legit_domains.csv ?
Ask here because when i check it in lookup it says no owner, so i think it created automatically from Splunk.
I know it can be update it manually, but it takes time again. it will helpfull when you can give me latest update for this .csv
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content


Hi @zksvc ,
this lookup belongs to the ES Content Updates App, so it should be updated when you update this app.
Ciao.
Giuseppe
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content


Hi @zksvc ,
this lookup belongs to the ES Content Updates App, so it should be updated when you update this app.
Ciao.
Giuseppe
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi @gcusello Thanks for your reply when i check my "ES Content Updates" is version 4.0.0 and it available Update to 4.38.0 I have question if I update it, will it affect other use cases that have been enabled? Or will it be safe for other use cases?
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content


Hi @zksvc ,
I don't know which use cases you enabled, but it's possible,
but anyway, app upgrade is a normal activity in ES.
Ciao.
Giuseppe
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Okay if like that, but did splunk 9.1.5 Compatible with 4.38.0 ? sorry because it's not my personal enviroment that's why i'm so careful before take action.
Ciao.
Zake
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content


Hi @zksvc ,
version 4.38.0 is compatible with Splunk 9.1.x, 9.2.x and 9.3.x versions.
Anyway, this app mainly gives you new Use Cases and eventual correct some old use cases, it's described in the documentation.
ciao.
Giuseppe
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thankyou for all information 🍻
Hope you have a nice day sir
Ciao.
Zake
