rataide
Activity
Applications (4)
- Information Adder
This search script will add additional information from a CSV file to your events. Changelog: v1.2 - Now includes basic error checking and additional fixes for malformed CSV files
Area: Applications Activity: Updated Thu 23/Oct/2008 - Splunk for tcpdump
This application will allow you to collect data from a tcpdump standard output directly into Splunk, it will also perform the necessary field extractions based on the Common Information Model This application is compliant with the 3.3.x standard.
Area: Applications Activity: Updated Tue 16/Sep/2008 - Reverse Name Resolution Search Script (DNS)
This search script (nslookup.py) will perform reverse name lookup on every IP from an event at search time.
Area: Applications Activity: Updated Tue 02/Sep/2008 - Squid Web Proxy
== Squid Application == This application will provide additional field extractions for Squid Proxy Server access_log files == Using Squid Application == At search time the following additional fields will be available: - duration - clientip - action - http_status - bytes - method - uri - proto - uri_host - uri_port - uri_path - username - hierarchy - server_ip - content_type
Area: Applications Activity: Updated Thu 10/Jul/2008