whois add on

Thanks For Downloading!

Review the documentation below and follow any custom installation steps. If no install steps are listed, most Splunk Apps and Add-ons can be installed as follows:

Windows: Decompress the downloaded file using a tool like 7-Zip and place the resulting folder into %PROGRAMFILES%\Splunk\etc\apps. Then restart Splunk using the splunk restart command or the GUI.

Unix/Linux: Decompress the downloaded file using a tool like tar -xvf and place the resulting folder into $SPLUNK_HOME\etc\apps. Then restart Splunk using the splunk restart command or the GUI.

Description

This distribution has 2 add-ons. These 2 add-ons provide 2 different ways to perform a whois. The external web sites that are used are for demonstration and the user should use their
own web sites if possible. They are both used in the context of a Splunk app. A requirement is that your data contains external IP addreses that can be used for workflow actions and/or look up commands. First extract your IP addresses from your index data. See the Splunk Docs on how to extract a field. For example, I have used ip as the name of my field. This is then used as input to the look up and and the work flow actions. Read the README.txt for further installation details.

.

Versions and Release Notes

Version 1.0.1 (current version - updated May 18, 2010)

Other Versions show »

Version 1.0 (updated May 3, 2010)

By downloading from Splunkbase, you agree to our Downloading Terms and Conditions »

Most of the applications and content on Splunkbase are submitted by parties other than us. That third-party content is the sole responsibility of the originator of that content. We are not responsible for any third-party content, whether or not we reviewed or moderated such content. You agree that you bear all risks ass ociated with using or relying on applications and content on Splunkbase. We do not in any way warrant the accuracy, reliability, completeness, usefulness, non-infringement, or quality of any applications or content on Splunkbase, regardless of who originated that content (including our employees, partners, affiliates or moderators), and even if an application is designated as "certified". We hereby disclaim all warranties, including but not limited to any implied warranties of merchantability or fitness for a particular purpose, relating to such applications or content. We shall not be liable or responsible in any way for any losses or damage of any kind, including lost profits or other indirect or consequential damages, relating to your use of or reliance upon any applications or content on Splunkbase.

About This App

Version 1.0.1
Last Updated: May 18, 2010
Author: ndoshi
Splunk Version: 4.1 or later
Price: Free
License: Creative Commons
Rating:
  (0 votes)
Please login to rate this app.

Preview App: