Hello community,
like to ask for support to get over conditional formatting. I have 3 different products in a group. Product A, B and C and I need to add for each of them a different formula (c...
...xcellent Custom Function that looks in the cached SOAR internals for the cached results from previous executions of a specific app/action.
He did mention that this was a 'work in progress' and I can't f...
...he number "N" in event and want to automate this new field so for every exampleN i have the same eval example. I mean it'll be a little more complicated as I'll create some case statement in eval but i...
Fairly new to writing playbooks within Phantom and so far havent found documentation for this yet: I'm trying to create an email notification (or something along those lines) whenever a playbook f...
Hi, I wonder whether someone may be able to help me please.
I've been reading the Splunk documentation on the 'coalesce' functionand understand the principals of this.
The example in the S...
So I have a field named "domain" that has values of single domains (A, B, C) and combinations of domains with two different values.
A B C A/B A/C A, B C, D I can successfully split the v...
I have this search that is working and returning a average Delay value: Search Command
| eval epoch_timestamp=strptime(timestamp,"%Y-%m-%dT%H:%M:%S.%3N%:z")
| stats range(epoch_timestamp) as D...
I'm trying to understand the functionality of keepevicted. I've read several documentation about it but it's still not clear. I've made a search with transaction. Without keepevicted I get 5...