A community-built SPL + dashboard repository
GoSplunk
Discover field-tested SPL searches and full dashboard XML you can copy straight into Splunk.
Sample SPL
index=security EventCode=4625
| stats count by Account_Name, ComputerName
| sort - count 128
SPL searches
Hand-picked SPL searches from across the library.
Listing incident review and the closing comments
Event Logs | System Logs | Warnings and Errors
Blocked Firewall Scanning Activity with indicator if Source has been allowed.
Gauge of Windows Successful Logons
Remediation Tracking Trend - Qualys
Reports Owned by Admin Users and Writable by Others
Check your strftime is correct in the props.conf
Index Modifications
List of Indexes
Dashboards
Full XML dashboards with panels, inputs, and drilldowns. Copy once, ship instantly.