Category: Splunk

Splunk’s Compliance Essentials provides several features that can help organizations meet the requirements of various compliance frameworks like CMMC, DFARS, FISMA and more. This app comes pre-packaged with a library of compliance practices, dashboards that can be used to monitor compliance status & track progress, and reports that can be used to demonstrate compliance to auditors.
Blog

Splunk Compliance Essentials: Your One-Stop Shop

February 16, 2024
Splunk SOAR: HUD Tutorial
Blog

Splunk SOAR: Introduction to the HUD Space

February 1, 2024
TekStream Tutorial: Troubleshooting Multiple Splunk Forwarders
Blog

Troubleshooting Splunk Forwarders Tutorial: Send Commands to Multiple Splunk Forwarders (Linux)

January 16, 2024
Datamodel is really like Savedsearches, providing structure to underlying unstructured data. Datamodel has multiple datasets, where datasets are like a table in the traditional database. In Splunk, when we create dataset, we create with some constrains. This blog walks through the end-to-end flow of a datamodel in Splunk ES. By the end of this demonstration, you will find the above definition makes sense.
Blog

How Datamodel Works in Splunk ES

December 14, 2023
Splunk SOAR: Make the most of your HUD Space with Pin lists
Blog

Splunk SOAR: Make the Most of Your HUD Space with Pin Lists

November 29, 2023
So what are these annoying SPL commands that can cause data to be lost? The three main ones are the sort, join and append commands. In this blog we will be going over each of these commands and how they can cause data loss. Fortunately, in Splunk there is usually more than one way to get things done and we will explore ways to not use these commands if you have large datasets or if you expect to have large data sets in the future.
Blog

Three Splunk Commands That Can Cause Loss of Data

November 16, 2023
Security Bulletin: Inject Splunk to Detect HTML Injection in NetScaler
Blog

Security Bulletin: Inject Splunk to Detect HTML Injection in Citrix NetScaler

November 8, 2023
Getting Rid of Unwanted Data with SEDCMD’s in Splunk
Blog

Getting Rid of Unwanted Data with SEDCMD’s in Splunk

November 2, 2023
Splunk Disaster Recovery Architecture
Blog

Splunk Disaster Recovery Architecture

October 26, 2023