Hi,
I'm new to Splunk and I'm trying to make the following search work:
Search:
| >= 50 document queries from the same user on Host x
| within one minute
| concerning 15 or more db records
Thanks in advance.
↧