Question
Scenario: Your boss want to know failure logon Locations (failure). Tool you have: Splunk software Data is already loaded into Hadoop HDFS: index=u7_hdp_74_win Giving functions
Scenario: Your boss want to know failure logon Locations (failure). Tool you have: Splunk software Data is already loaded into Hadoop HDFS: index="u7_hdp_74_win" Giving functions and Operators: index, rex, stats, iplocation, geostats, |, count by. Using regex to extract the IP address as field name src_ip. Search keyword: failure Data field name: src_ip Using regex to extract the IP address as field name src_ip, review the values in the field of src_ip.
Showing statistic of source IP address and Visualizing in the map. Please reply with Splunk search query.
Step by Step Solution
There are 3 Steps involved in it
Step: 1
Get Instant Access to Expert-Tailored Solutions
See step-by-step solutions with expert insights and AI powered tools for academic success
Step: 2
Step: 3
Ace Your Homework with AI
Get the answers you need in no time with our AI-driven, step-by-step assistance
Get Started