Josh Neubecker, Author at Security Boulevard
Using Splunk Streamstats to Calculate Alert Volume

Using Splunk Streamstats to Calculate Alert Volume

| | Splunk Tutorials
Dynamic thresholding using standard deviation is a common method we used to detect anomalies in Splunk correlation searches. However, one of the pitfalls with this method is the difficulty in tuning these searches. This is where the wonderful streamstats command comes to the rescue. This Splunk tutorial will cover why ... Read More