Detect Web Traffic To Dynamic Domain Providers
This search looks for web connections to dynamic DNS providers.
This content is not mapped to any local saved search. Add mapping
Detect Web Traffic To Dynamic Domain Providers Help
This search requires you to be ingesting web-traffic logs. You can obtain these logs from indexing data from a web proxy or by using a network-traffic-analysis tool, such as Bro or Splunk Stream. The web data model must contain the URL being requested, the IP address of the host initiating the request, and the destination IP. This search also leverages a lookup file,
Open in Search