Tag: Splunk Enterprise

Latest Articles

Get in Command of Splunk Resources with Workload Management - Part 1
Platform
4 Minute Read

Get in Command of Splunk Resources with Workload Management - Part 1

In this series, I will share how Splunk Workload Management may be used to solve these challenges. In the first installment below, I will describe how to configure the feature.
The Insider's Guide to Splunk Enterprise Upgrades: Before, During, and After
Platform
4 Minute Read

The Insider's Guide to Splunk Enterprise Upgrades: Before, During, and After

Splunk technical smokejumper David Paper shares tips for a low-risk, fast-recovery Splunk Enterprise upgrade.
Order Up! | Custom Sort Orders
Tips & Tricks
4 Minute Read

Order Up! | Custom Sort Orders

A how-to on creating custom sort orders for your search results
Boss of the SOC (BOTS) Advanced APT Hunting Companion App: Now Available on Splunkbase
Security
3 Minute Read

Boss of the SOC (BOTS) Advanced APT Hunting Companion App: Now Available on Splunkbase

If you want to learn more about threat hunting with Splunk, this app in conjunction with the BOTSv2 data set is just the answer!
Configure Jupyter Notebook to Interact with Splunk Enterprise & the Splunk Machine Learning Toolkit
Platform
3 Minute Read

Configure Jupyter Notebook to Interact with Splunk Enterprise & the Splunk Machine Learning Toolkit

Configure Jupyter Notebook to interact with Splunk Enterprise and the Splunk Machine Learning Toolkit
Hands on Lab: Sandboxing with Splunk with Docker (from .conf2017)
Tips & Tricks
8 Minute Read

Hands on Lab: Sandboxing with Splunk with Docker (from .conf2017)

Accept it. You're afraid to take risks with Splunk. So was I. That is, until Docker changed my life. Join the cult and learn how to rapidly create disposable Splunk sandboxes in mere minutes!
Detecting Typosquatting, Phishing, and Corporate Espionage with Enterprise Security Content Update
Security
3 Minute Read

Detecting Typosquatting, Phishing, and Corporate Espionage with Enterprise Security Content Update

Splunk’s Enterprise Security Content Update (ESCU) app can provide you with early warnings and situational awareness—powerful elements of an effective defense against adversaries
Splunk Named a Leader in Gartner SIEM Magic Quadrant for the Fifth Straight Year
Security
2 Minute Read

Splunk Named a Leader in Gartner SIEM Magic Quadrant for the Fifth Straight Year

Gartner's 2017 Magic Quadrant for Security Information and Event Management names Splunk a leader for the fifth straight year
Ready, Set, Stream with the Kinesis Firehose and Splunk Integration
Partners
1 Minute Read

Ready, Set, Stream with the Kinesis Firehose and Splunk Integration

Stream data from various AWS services directly into Splunk reliably and at scale with the Kinesis Firehose integration with Splunk
/en_us/blog/fragments/subscribe-footer