TryHackMe Write Up - Splunk Basics
https://tryhackme.com/room/splunk101
For this write up i will skip directly to task 5 since for the tasks before you just need to read the provided text.
Download the attached log file “VPN_logs” and upload this file into the Splunk instance with the right source type. In case you are using the AttackBox, the file is available in the /root/Rooms/SplunkBasic/ directory.
Upload the data attached to this task and create an index “VPN_Logs”.