Splunk Search
Highlighted

Where to find best scenarios related to SIEM to get familiar with Splunk search commands?

Explorer

Hi All,

Is there any way to get some scenarios so that i can try and get familiar with the search commands in Splunk. It will be good if any one can suggest me with the some sites where we could find the best scenarios related to SIEM in general.

Thanks
Shiva

Tags (2)
0 Karma
Highlighted

Re: Where to find best scenarios related to SIEM to get familiar with Splunk search commands?

Influencer

Splunk has got very good documentation. For each search command they have given scenarios for understanding.

http://docs.splunk.com/Documentation/Splunk/6.1.2/SearchReference/Abstract
http://docs.splunk.com/Documentation/Splunk/6.1.2/AdvancedDev/Searchscripts
http://docs.splunk.com/images/a/a3/Splunk4.xcheatsheet.pdf

Highlighted

Re: Where to find best scenarios related to SIEM to get familiar with Splunk search commands?

Influencer

Also answers.splunk.com has many questions and answers related to search commands.

0 Karma
Highlighted

Re: Where to find best scenarios related to SIEM to get familiar with Splunk search commands?

SplunkTrust
SplunkTrust

How about Splunk's Search Tutorial? They have many good examples with sample data that you can practice upon.

http://docs.splunk.com/Documentation/Splunk/6.1.2/SearchTutorial/WelcometotheSearchTutorial