...erver.
Lets assume if i m ingesting a 300GB/day in splunk and i have 5 administrative users using search head then the highlighted below is good to follow.
If i am adding Enterprisesecurity...
Specifically, what datasources does the Splunkfor Entrrpise Security REQUIRE? What datasources are OPTIONAL? Is there a complete list somewhere? Thanks.
After configuring the proxy settings for downloading the SplunkforEnterpriseSecurity Intelligence Sourcedata, I am still receiving errors indicating the download has failed. I know this is a r...
Hi, I deployed Splunk distributed topology. Now my server Search Head has issue: KVStore is on failed state (it make app "Enterperise Security" failed too). I checked "/opt/splunk/var/log/splunk/splunk...
Running a Windows 2012 R2 DHCP Server with UF 9.0.1 and SplunkEnterprise 8.0.5. My inputs at the UF look like this:
[default]
index = windowsdhcp
_TCP_ROUTING = prod
[WinEventLog://S...
Hello Dear Friends
I installed splunkenterprisesecurity 5.3.0 on the searchhead and installed Fortinet FortiGate Add-On forSplunk on the searchhead and indexer, then configure 3 Fortigate 600C t...
I've heard that using AWS Lambda is a great way to get high volumes of data directly into Splunk without the overhead managing hardware. It seems like a great solution, can you provide an overview t...
I need details about what to check before I upgrade so I know if my deployment is ready to upgrade. What do I monitor, and how do I benchmark system health before the upgrade?