Splunk Search

way to detect half-duplex connections

virginiatech199
Explorer

Does anyone know a pattern for detecting half-duplex connections from server/laptop sources to server destinations? not switches, not routers.

I am Splunk Cloud Version: 9.0.2305.101

0 Karma

PickleRick
SplunkTrust
SplunkTrust

As long as you tell us what data you have that should have this information and say how would you detect it from said data.

Oh, and firstly please define what do you mean by "half duplex connection from source to destination".

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...