Splunk UseCase | Splunk Alert | Splunk Detect Brute force

Описание к видео Splunk UseCase | Splunk Alert | Splunk Detect Brute force

Splunk UseCase | Splunk Alert | Splunk Detect Brute force
Explains how to detect successful brute force. unlike counting excessive number of failed logins and at least one successful login. This detects successful authentication after n number of consecutive failed logins.

sample events used in video : https://github.com/splunkps/others/bl...

Комментарии

Информация по комментариям в разработке