I need an action for an incident responder to send a selected event's data via email. I can define notable actions, but they will be triggered automatically when a notable is created. How can I do this...
...insert a " character in a string, instead of just simply a " . I wanted to go through all the old records and simply replace the \" with a " . How would I go about doing this? It seems like I...
...ny log being indexed by Splunk. I just want touse the Google Maps application to map them out. To take this one step further, I have the IPs (400+) in a spreadsheet. Any suggestions in howto "f...
Has anyone been able to get thisto work "Use a REST API tomanually trigger DB inputs" to ,anually trigger DB Inputs with REST API and be able to track the state of its execution (in-process, c...
Hi,
is it possible to roll specific buckets to frozen? I have some buckets which the customer wants to be deleted (don't ask why), and I would kindly ask if this is possible without stopping S...
...nd savedsearches/co-relation search for Use-case. Howto trigger notables to "Incident Review" dashboard manually?
The only piece I don't know is search to notables index insertion. If you guys k...
...don't know if it's possible tomanually encrypt a password string with the splunk.secret file. Here's how I've tried to get around this:
Put the above stanzas in the cluster master's server.conf...