A community-built SPL + dashboard repository
GoSplunk
Discover field-tested SPL searches and full dashboard XML you can copy straight into Splunk.
Sample SPL
index=security EventCode=4625
| stats count by Account_Name, ComputerName
| sort - count 128
SPL searches
Hand-picked SPL searches from across the library.
Current Vulnerability Summary by Severity (tenable)
Accounts Disabled
Indexes in Splunk
Basic binary conversion for IPv4 Mask
Search for disabled AD accounts that have been re-enabled
Top 5 License Consuming Hosts
Qualys Active OS Vuln Count
Average Splunk Web requests by hour
Remove mulitple values from a multivalue field
Dashboards
Full XML dashboards with panels, inputs, and drilldowns. Copy once, ship instantly.