Tags » Splunk

Make Everyone Talk to Hal !!

Hal is my Hubot chatbot .. He’s awesome !! He gets me beer !!

He also does things like restart app servers, deploy code, and show me pictures of grumpy cats ..  270 more words

Ansible

SIEM: You're Doing it Wrong

Security Information and Event Management (SIEM) is not specifically mentioned in the CompTIA Security+ Exam Objectives. However, the implementations of a network’s security infrastructure that feed SIEM are specifically mentioned in CompTIA Security+ Exam Objective 1.0 “Network Security”. 638 more words

CompTIA

Splunking Kafka with Kafka Connect

For this post I’m going to walk through how to use Kafka Connect (and the kafka-connect-splunk connector) along with a Splunk Heavy Forwarder to stream data from a Kafka cluster to one or many Splunk instances.   3,338 more words

Kafka

Monitor in Splunk: Assign filename extension to sourcetype

Problem

  • You want to monitor a folder and want to automatic assign sourcetypes to filename extension

Solution

  1. Create your sourcetypes (example ABC and DEF)
  2. Open or create /$SPLUNK_HOME/etc/system/local/props.conf…
  3. 13 more words
English

Splunking Wi-Fi DFS Events

One aspect of wireless networking that I’ve always struggled with is visibility into DFS events. Usually I catch them by chance by noticing two nearby AP’s on a site map using the same non-DFS channel, or maybe by casually looking through logs, but I’ve never felt like I had the reporting and alerting that should be in place for DFS events, because they can be very disruptive. 675 more words

WLAN

StorageShort: The Problem With Splunk Storage Management

Of all the new applications on the market today, Splunk does make one of the best attempts to manage storage. It uses a bucket metaphor to make sure data is in the most performance and cost appropriate storage type. 86 more words

Flash

IBM Websphere Datapower - Latency Log parser for Splunk

The following Regular expression Splunk query will help to extract the Datapower Latency log tokens. This query will be helpful to generate the Splunk reports based on the different domains and datapower components like web service proxy, xml filewall and multi protocol gateway etc… 983 more words