All Apps and Add-ons

AntiSpam update report

alikapucu
Explorer

When i checked the reports under proofpoint app. I am seeing field "type=mail" in the search string hovewer this field is not in the search results so it is breaking the reports. What should i do? Go every reports and remove the type from search string or is there an update can fix this?

get_pps_index sourcetype="pps_filter_log" mod=spam type=mail cmd=refresh engine=* | table _time engine definitions

0 Karma

eckolp2003
Path Finder

The next version of the app will correct some of the broken reports. For now, you are welcome to edit the search query as needed.

0 Karma
Get Updates on the Splunk Community!

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework ...

WATCH NOWAs AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting ...

Splunk APM: New Product Features + Community Office Hours Recap!

Howdy Splunk Community! Over the past few months, we’ve had a lot going on in the world of Splunk Application ...

Index This | Forward, I’m heavy; backward, I’m not. What am I?

April 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...