I have upgraded my Splunk Enterprise to 9.0 and we now get warning like this:
Some visualizations have not loaded since we detected usage of riskycommands in the query.
This is OK, and I n...
Is it possible to check if a certain field is a multi-value field?
I'm rewriting some old searches. They contain a few mvexpand commands, but I'm not sure whether this is necessary or not.
I...
All,
Below is a link to the new SPL Safeguards feature that came out it 6.4. It is set up to warn users about dangerous commands to review before running.
I would like to know if this can be c...
We currently use an automatic deployment for splunk-apps. We create a tar-archive of the app and deploy it via $SPLUNK_HOME/bin/splunk install app app.tar -update 1 (currently only single-m...