Social Security Numbers (PII) data is found in log events, which is against company policy. SSN format is as
follows: 123-44-5678.
Which configuration file and stanza pair will mask possible SSNs in the log events?
Using the CLI on the forwarder, how could the current forwarder to indexer configuration be viewed?
An admin updates the Role to Group mapping for external authentication. How does the change affect users that are currently logged into Splunk?