avatar

rataide


Activity

Applications (4)

  • Information Adder

    This search script will add additional information from a CSV file to your events. Changelog: v1.2 - Now includes basic error checking and additional fixes for malformed CSV files

    Area: Applications
    Activity: Updated Thu 23/Oct/2008
  • Splunk for tcpdump

    This application will allow you to collect data from a tcpdump standard output directly into Splunk, it will also perform the necessary field extractions based on the Common Information Model This application is compliant with the 3.3.x standard.

    Area: Applications
    Activity: Updated Tue 16/Sep/2008
  • Reverse Name Resolution Search Script (DNS)

    This search script (nslookup.py) will perform reverse name lookup on every IP from an event at search time.

    Area: Applications
    Activity: Updated Tue 02/Sep/2008
  • Squid Web Proxy

    == Squid Application == This application will provide additional field extractions for Squid Proxy Server access_log files == Using Squid Application == At search time the following additional fields will be available: - duration - clientip - action - http_status - bytes - method - uri - proto - uri_host - uri_port - uri_path - username - hierarchy - server_ip - content_type

    Area: Applications
    Activity: Updated Thu 10/Jul/2008