I've seen someone use this traffic search function but can't find it myself: How can I access this traffic search function? I know that I can run a search to get the same result but would l...
I have created a dashboard that takes input from the users in 4 textbox inputs and store it in a lookup file. My requirement is that tokens should be passed to the search query only after submit b...
When using regex how can I take a field formatted as "0012-4250" and only show the 1st and lat 3 digits? I tried the following in which maintains the original output:
| eval AcctCode = replace(A...
Hello All ,
Greetings
I am looking for perfect explanation of memk() function used with convert statement , how it works and where to pass the m,g,k (The letter k indicates kilobytes, m...
Hi guys, I started today with Splunk and have one question. I want to use an or function that if the second "or" the third row is active I got the trigger. Any ideas how t...
...earches-and-why-they-help/ Question 1) - index=firewall_data 127.0.0.1 Or - index=firewall_data "127.0.0.1" If I search that, because of the internal segmentation process 1...
Hello community,
like to ask for support to get over conditional formatting. I have 3 different products in a group. Product A, B and C and I need to add for each of them a different formula (c...
Fairly new to writing playbooks within Phantom and so far havent found documentation for this yet: I'm trying to create an email notification (or something along those lines) whenever a playbook f...