A community-built SPL + dashboard repository
GoSplunk
Discover field-tested SPL searches and full dashboard XML you can copy straight into Splunk.
Sample SPL
index=security EventCode=4625
| stats count by Account_Name, ComputerName
| sort - count 128
SPL searches
Hand-picked SPL searches from across the library.
Changes to Windows User Groups by Account
List All Hosts Associated with All Indexes
High Severity Vulnerabilities - Qualys
Qualys Hosts not Scanned in 30 days+
Searches to check search concurrency for historical or real time
List all fields for an index
Permissions for splunk users
Visits by Days of the Week in IIS
Logon Types within a Windows Environment (with logon count)
Dashboards
Full XML dashboards with panels, inputs, and drilldowns. Copy once, ship instantly.