how to remove other values from this search syntax
index=main sourcetype=access_combined_wcookie productId
| chart count by clientip | iplocation clientip
| geostats count by clientip globallimit=5
... View more
Hello everyone,
Urgently, am looking for a web security logs to ingest it in splunk enterprise for practicing purpose
any help would be highly appreciated
Regards
... View more
i can't understand when to use regex and when to use delimiter
-Regex
Use this option when your event contains unstructured data like a system log file
-Delimiter
Use this option when your event contains structured data like a .csv file
... View more
I really appreciate your help but to be more specific i need the same data used for Fundamentals 1 and Fundamentals 2 .
If you don't mind can you send me a direct link for the same data
... View more
Can i use the same logs i get for Fundamentals 1 with Fundamentals 2 labs ? if not where i can i get the same logs indexed for Fundamentals 2 course?
Note that this is only for my own practice
... View more
am about to register for Using Enterprise Security but i would like to make sure if am going to receive an official material for studying during the course like pdf or ppt ? anyone has any idea about this
Thanks
... View more
I am supposed to give training for this course "Using Enterprise Security",
where can I get an official powerpoint slides to teach from it?
Please help
... View more