Home
Join the Community
Getting Started
Welcome Center
Join Slack
Be a Splunk Champion
SplunkTrust
Super User Program
Badges
Tell us what you think
Splunk Love
Community Feedback
Learn Splunk
Learning Paths
Training & Certification
Training + Certification Discussions
Training & Certification Blog
AppDynamics Knowledge Base
Share a Tip
Find Answers
Splunk Administration
Getting Data In
Deployment Architecture
Monitoring Splunk
Using Splunk
Splunk Search
Dashboards & Visualizations
Splunk Platform
Splunk Enterprise
Splunk Cloud Platform
Splunk AppDynamics
Apps & Add-ons
Splunk Development
All Apps and Add-ons
Premium Solutions
Splunk Enterprise Security
Splunk Observability Cloud
Splunk ITSI
Splunk SOAR
News & Events
Blog & Announcements
Community Blog
Product News & Announcements
Events and Contests
Tech Talks: Technical Deep Dives
Office Hours: Ask the Experts
User Groups
Resources
.conf25
SplunkBase
Developers
Documentation
Splunk Ideas
Splunk Events
Sign In
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Show
only
|
Search instead for
Did you mean:
×
Join the Conversation
Without signing in, you're just watching from the sidelines.
Sign in or Register
to connect, share, and be part of the Splunk Community.
All community
Knowledge base
jfcshunter
Users
Products
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Show
only
|
Search instead for
Did you mean:
Ask a Question
Find Answers
:
About jfcshunter
jfcshunter
Explorer
Member since:
05-12-2021
05-05-2023
Community Statistics
Posts
3
Solutions
0
Karma Given
7
Karma Received
0
Member Since
05-12-2021
View all badges
Activity Feed
Karma
Re: How to extract only the first three octets of the IP address instead of the whole address?
for s2_splunk.
04-05-2023
02:54 AM
Posted
Re: How to tune this search for detection of DNS tunnels rule
on
Splunk Enterprise Security
.
02-09-2022
06:26 AM
Karma
Re: How to extract a value from a field with spaces?
for sundareshr.
01-31-2022
02:13 AM
Karma
Re: How to extract a value from a field with spaces?
for yozhbk.
01-31-2022
02:13 AM
Karma
Re: Getting a comma separate string from values function within stats command
for raoul.
10-07-2021
09:20 AM
Posted
Re: Join - how do I fillnull on a join?
on
Splunk Search
.
07-21-2021
03:48 AM
Tagged
Re: Join - how do I fillnull on a join?
on
Splunk Search
.
07-21-2021
03:48 AM
Karma
Re: Join - how do I fillnull on a join?
for sbsbb.
07-21-2021
03:47 AM
Tagged
Re: How to tune this search for detection of DNS tunnels rule
on
Splunk Enterprise Security
.
06-29-2021
07:31 AM
Tagged
Re: How to tune this search for detection of DNS tunnels rule
on
Splunk Enterprise Security
.
06-29-2021
07:31 AM
Tagged
Re: How to tune this search for detection of DNS tunnels rule
on
Splunk Enterprise Security
.
06-29-2021
07:31 AM
Posted
Re: How to tune this search for detection of DNS tunnels rule
on
Splunk Enterprise Security
.
06-29-2021
07:30 AM
Karma
Re: Compare search results with a lookup table and identify unobserved matches
for somesoni2.
06-17-2021
06:35 AM
Karma
Re: How to use a subsearch to search across two indexes with no common field?
for datasearchninja.
05-12-2021
02:27 AM
Topics I've Started
No posts to display.
View All
Latest Contributions by jfcshunter
Topics jfcshunter has Participated In
Latest Contributions by jfcshunter
Re: How to tune this search for detection of DNS t...
by
jfcshunter
in
Splunk Enterprise Security
02-09-2022
06:26 AM
02-09-2022
06:26 AM
https://docs.splunksecurityessentials.com/content-detail/showcase_huge_volume_dns_requests/ Now is the updated DNS tunnelling article
... View more
Re: Join - how do I fillnull on a join?
by
jfcshunter
in
Splunk Search
07-21-2021
03:48 AM
07-21-2021
03:48 AM
Good answer thanks, link updated for newest version (July 2021): https://docs.splunk.com/Documentation/Splunk/8.2.1/SearchReference/Join
... View more
Tags:
ood an
Re: How to tune this search for detection of DNS t...
by
jfcshunter
in
Splunk Enterprise Security
06-29-2021
07:30 AM
06-29-2021
07:30 AM
For those looking into this: https://docs.splunksecurityessentials.com/content-detail/detection_of_dns_tunnels/
... View more
Tags:
datamodel
dns
tunnelling
Contact Me
Online Status
Offline
Date Last Visited
05-05-2023
09:42 AM
Karma given to
User
Karma Count
s2_splunk
1
sundareshr
1
yozhbk
1
raoul
1
sbsbb
1
View All