127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:34.478 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:19:32.696 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:19:32.694 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:19:32.692 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:19:32.690 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 869 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:19:32.687 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:19:32.685 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 869 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:22.032 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:21.863 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:21.854 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:21.846 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:21.834 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:21.800 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:21.779 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:21.757 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:21.730 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:21.697 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:21.634 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:21.620 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:21.604 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:19.458 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:19.445 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:19.430 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:19.380 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:19.366 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:19.352 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:19.096 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:19.081 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:06.412 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:06.404 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:06.396 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:06.261 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:06.248 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:06.160 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:06.136 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:06.107 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:04.578 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:04.570 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:04.502 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:04.490 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:04.476 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:04.315 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:04.281 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:04.252 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:00.218 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:00.210 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:19:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:51.381 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:51.373 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:51.365 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:51.312 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:51.297 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:51.052 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:51.038 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:51.021 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:49.361 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:49.343 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:49.340 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:49.326 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:49.323 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:49.301 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:49.208 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:49.192 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:36.366 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:36.352 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:36.337 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:36.324 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:36.310 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:36.194 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:36.172 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:36.145 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:35.668 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:35.476 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:35.462 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:35.449 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:35.435 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:35.306 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:35.300 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:35.281 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:35.273 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:35.258 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:35.179 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:35.154 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:35.126 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:18:34.860 +0000] "GET /services/search/jobs/remote_sh1_SummaryDirector_1673371114.30/search_telemetry.json HTTP/1.1" 200 707 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:18:34.856 +0000] "GET /services/search/jobs/remote_sh1_SummaryDirector_1673371114.30/search.log HTTP/1.1" 200 2939 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:18:34.836 +0000] "GET /services/search/jobs/remote_sh1_SummaryDirector_1673371114.31/search_telemetry.json HTTP/1.1" 200 711 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:18:34.830 +0000] "GET /services/search/jobs/remote_sh1_SummaryDirector_1673371114.31/search.log HTTP/1.1" 200 2879 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:34.768 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:18:34.762 +0000] "POST /services/streams/search?sh_sid=SummaryDirector_1673371114.30 HTTP/1.1" 200 1473 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 78ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:18:34.741 +0000] "POST /services/streams/search?sh_sid=SummaryDirector_1673371114.31 HTTP/1.1" 200 1467 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 77ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:34.714 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:34.660 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:18:32.691 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:18:32.689 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:18:32.688 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:18:32.686 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:18:32.683 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:18:32.680 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:22.025 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:21.849 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:21.840 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:21.832 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:21.825 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:21.735 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:21.722 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:21.709 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:21.689 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:21.676 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:21.662 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:21.525 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:21.495 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:19.419 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:19.406 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:19.392 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:19.266 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:19.246 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:19.244 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:19.229 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:19.216 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:06.376 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:06.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:06.282 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:06.270 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:06.256 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:06.095 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:06.082 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:06.067 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:04.350 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:04.343 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:04.337 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:04.331 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:04.318 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:04.119 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:04.098 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:04.077 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:00.219 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:00.211 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:00.211 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:18:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:51.366 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:51.354 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:51.340 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:51.327 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:51.314 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:51.300 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:51.115 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:51.101 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:49.453 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:49.440 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:49.428 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:49.268 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:49.255 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:49.241 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:49.144 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:49.122 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:36.384 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:36.376 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:36.262 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:36.249 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:36.235 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:36.109 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:36.082 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:36.060 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:35.060 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:34.853 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:34.838 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:34.826 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:34.813 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:34.739 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:34.725 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:34.614 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:34.591 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:34.585 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:34.576 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:34.543 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:34.513 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:17:32.687 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 485 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:17:32.685 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:17:32.683 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1045 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:17:32.681 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:17:32.678 +0000] "GET /services/server/info HTTP/1.1" 200 1559 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:17:32.676 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:22.006 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:21.830 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:21.822 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:21.814 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:21.806 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:21.717 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:21.710 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:21.701 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:21.689 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:21.676 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:21.675 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:21.560 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:21.536 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:19.332 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:19.315 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:19.314 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:19.300 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:19.289 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:19.269 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:19.268 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:19.247 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:06.364 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:06.351 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:06.344 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:06.331 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:06.318 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:06.111 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:06.098 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:06.083 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:04.363 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:04.355 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:04.284 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:04.271 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:04.257 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:04.084 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:04.070 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:04.056 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.497 +0000] "POST /servicesNS/nobody/splunk_archiver/saved/searches/Bucket%20Copy%20Trigger/notify?trigger.condition_state=1 HTTP/1.1" 200 1969 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.452 +0000] "POST /services/search/jobs/1673371020.29/control HTTP/1.0" 200 138 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.438 +0000] "POST /services/search/jobs/1673371020.29/control HTTP/1.0" 200 138 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.421 +0000] "GET /services/search/jobs/1673371020.29 HTTP/1.0" 200 11170 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.420 +0000] "POST /servicesNS/nobody/splunk_archiver/saved/searches/Bucket%20Copy%20Trigger/notify?trigger.condition_state=1 HTTP/1.1" 200 1969 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.388 +0000] "POST /services/search/jobs/1673371020.96/control HTTP/1.0" 200 138 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.380 +0000] "POST /services/search/jobs/1673371020.96/control HTTP/1.0" 200 138 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.370 +0000] "GET /services/search/jobs/1673371020.96 HTTP/1.0" 200 10095 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:17:01.349 +0000] "GET /services/search/jobs/remote_sh1_1673371020.29/search_telemetry.json HTTP/1.1" 200 744 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:17:01.344 +0000] "GET /services/search/jobs/remote_sh1_1673371020.29/search.log HTTP/1.1" 200 2650 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.314 +0000] "GET /services/server/info/server-info?count=0 HTTP/1.0" 200 6522 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.304 +0000] "GET /services/search/jobs/1673371020.29 HTTP/1.0" 200 7733 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.294 +0000] "GET /services/data/indexes?search=disabled%3D0&count=0 HTTP/1.0" 200 71724 "-" "Python-httplib2/0.13.1 (gzip)" - - - 7ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.289 +0000] "GET /services/search/jobs/1673371020.29 HTTP/1.0" 200 7733 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.251 +0000] "GET /services/search/jobs/1673371020.96 HTTP/1.0" 200 7639 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.222 +0000] "GET /services/search/jobs/1673371020.96 HTTP/1.0" 200 7639 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.221 +0000] "GET /services/server/info/server-info?count=0 HTTP/1.0" 200 6481 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.197 +0000] "GET /services/server/info/server-info?count=0 HTTP/1.0" 200 6522 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.192 +0000] "GET /services/data/indexes?search=disabled%3D0&count=0 HTTP/1.0" 200 71469 "-" "Python-httplib2/0.13.1 (gzip)" - - - 8ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.173 +0000] "GET /services/search/jobs/1673371020.29 HTTP/1.0" 200 7733 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.163 +0000] "GET /services/data/indexes?search=disabled%3D0&count=0 HTTP/1.0" 200 71724 "-" "Python-httplib2/0.13.1 (gzip)" - - - 12ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.147 +0000] "GET /services/search/jobs/1673371020.29 HTTP/1.0" 200 7733 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.092 +0000] "GET /services/search/jobs/1673371020.96 HTTP/1.0" 200 7639 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.064 +0000] "GET /services/search/jobs/1673371020.96 HTTP/1.0" 200 7639 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:01.023 +0000] "GET /services/search/jobs/1673371020.29 HTTP/1.0" 200 7733 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.994 +0000] "GET /services/search/jobs/1673371020.29 HTTP/1.0" 200 7733 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.960 +0000] "GET /services/search/jobs/1673371020.29 HTTP/1.0" 200 7733 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.942 +0000] "GET /services/search/jobs/1673371020.96 HTTP/1.0" 200 7639 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.936 +0000] "GET /services/search/jobs/1673371020.29 HTTP/1.0" 200 7733 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.927 +0000] "GET /services/search/jobs/1673371020.96 HTTP/1.0" 200 7639 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.911 +0000] "GET /services/search/jobs/1673371020.96 HTTP/1.0" 200 7639 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.907 +0000] "GET /services/search/jobs/1673371020.29 HTTP/1.0" 200 7733 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:17:00.891 +0000] "POST /services/streams/search?sh_sid=1673371020.29 HTTP/1.1" 200 1507 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 447ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.877 +0000] "GET /services/search/jobs/1673371020.96 HTTP/1.0" 200 7639 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.860 +0000] "GET /services/search/jobs/1673371020.96 HTTP/1.0" 200 7639 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.833 +0000] "GET /services/search/jobs/1673371020.29 HTTP/1.0" 200 5527 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.795 +0000] "GET /services/search/jobs/1673371020.96 HTTP/1.0" 200 5464 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.759 +0000] "GET /services/search/jobs/1673371020.29 HTTP/1.0" 200 4384 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.730 +0000] "GET /services/search/jobs/1673371020.96 HTTP/1.0" 200 4321 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.726 +0000] "POST /servicesNS/splunk-system-user/splunk_archiver/search/jobs HTTP/1.0" 201 89 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.718 +0000] "POST /servicesNS/splunk-system-user/splunk_archiver/search/jobs HTTP/1.0" 201 89 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.706 +0000] "GET /services/data/vix-indexes?search=disabled%3D0%20AND%20vix.output.buckets.from.indexes%3D%2A&count=0 HTTP/1.0" 200 1883 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.705 +0000] "GET /services/data/vix-indexes?search=disabled%3D0%20AND%20vix.output.buckets.from.indexes%3D%2A&count=0 HTTP/1.0" 200 1883 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.697 +0000] "GET /services/data/vix-providers?count=0 HTTP/1.0" 200 1893 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.691 +0000] "GET /services/data/vix-providers?count=0 HTTP/1.0" 200 1893 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.216 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.209 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.200 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.199 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:17:00.191 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:51.390 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:51.385 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:51.375 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:51.372 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:51.362 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:51.357 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:51.209 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:51.185 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:49.474 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:49.467 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:49.459 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:49.354 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:49.323 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:49.282 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:49.073 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:49.058 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:36.380 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:36.372 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:36.254 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:36.241 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:36.228 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:36.152 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:36.138 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:36.124 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:35.043 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:34.808 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:34.794 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:34.771 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:34.750 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:34.749 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:34.735 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:34.734 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:34.711 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:34.687 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:34.568 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:34.546 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:34.517 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:16:32.682 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:16:32.680 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:16:32.678 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:16:32.676 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:16:32.673 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:16:32.671 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:21.999 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:21.828 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:21.818 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:21.817 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:21.802 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:21.800 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:21.789 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:21.777 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:21.704 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:21.673 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:21.652 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:21.478 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:21.452 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:19.453 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:19.441 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:19.424 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:19.263 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:19.250 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:19.236 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:19.132 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:19.109 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:06.376 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:06.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:06.282 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:06.269 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:06.255 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:06.084 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:06.070 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:06.056 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:04.424 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:04.410 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:04.396 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:04.228 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:04.226 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:04.211 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:04.196 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:04.169 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:00.270 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:00.262 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:00.252 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:00.218 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:00.210 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:16:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:51.362 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:51.349 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:51.337 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:51.334 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:51.321 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:51.307 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:51.188 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:51.161 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:49.421 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:49.408 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:49.393 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:49.243 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:49.230 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:49.156 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:49.134 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:49.119 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:36.367 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:36.353 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:36.327 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:36.314 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:36.300 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:36.253 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:36.239 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:36.225 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:35.064 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:34.883 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:34.868 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:34.852 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:34.839 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:34.693 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:34.680 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:34.672 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:34.664 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:34.646 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:34.505 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:34.480 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:34.455 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:15:32.674 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:15:32.672 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:15:32.670 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:15:32.668 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:15:32.665 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:15:32.663 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:22.308 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:22.146 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:22.137 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:22.129 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:22.122 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:21.973 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:21.950 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:21.949 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:21.924 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:21.920 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:21.880 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:21.856 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:21.832 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:21.500 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:21.470 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:21.431 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:19.334 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:19.334 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:19.320 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:19.307 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:19.304 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:19.274 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:19.243 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:19.214 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:06.366 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:06.357 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:06.352 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:06.344 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:06.337 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:06.098 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:06.070 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:06.047 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:04.415 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:04.401 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:04.387 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:04.280 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:04.254 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:04.169 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:04.147 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:04.133 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:00.211 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:00.203 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:00.193 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:00.152 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:00.145 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:15:00.135 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:51.383 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:51.376 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:51.368 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:51.320 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:51.306 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:51.292 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:51.200 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:51.178 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:49.394 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:49.381 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:49.367 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:49.271 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:49.257 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:49.072 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:49.058 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:49.044 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:36.404 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:36.391 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:36.387 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:36.377 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:36.374 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:36.143 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:36.130 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:36.116 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:35.074 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:34.910 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:34.901 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:34.886 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:34.873 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:34.770 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:34.749 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:34.723 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:34.660 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:34.638 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:34.522 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:34.494 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:34.454 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:14:32.673 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:14:32.670 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:14:32.668 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:14:32.666 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:14:32.663 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:14:32.659 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:21.994 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:21.832 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:21.823 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:21.815 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:21.808 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:21.716 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:21.711 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:21.699 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:21.688 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:21.685 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:21.668 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:21.500 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:21.474 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:19.455 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:19.447 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:19.439 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:19.187 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:19.182 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:19.168 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:19.164 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:19.140 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:06.380 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:06.372 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:06.300 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:06.276 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:06.263 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:06.246 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:06.222 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:06.194 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:04.402 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:04.389 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:04.375 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:04.281 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:04.268 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:04.242 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:04.221 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:04.198 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:00.263 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:00.255 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:00.246 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:00.215 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:00.207 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:14:00.197 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:51.379 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:51.371 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:51.363 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:51.303 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:51.289 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:51.261 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:51.242 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:51.227 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:49.346 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:49.346 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:49.333 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:49.331 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:49.319 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:49.108 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:49.078 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:49.056 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:36.382 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:36.374 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:36.325 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:36.312 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:36.297 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:36.149 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:36.120 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:36.099 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:35.378 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:35.200 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:35.187 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:35.173 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:35.160 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:35.048 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:35.026 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:34.997 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:34.943 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:34.928 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:34.918 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:34.888 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:34.861 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:34.484 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:34.452 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:34.424 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:13:32.661 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:13:32.659 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:13:32.657 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:13:32.655 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:13:32.652 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:13:32.650 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:21.986 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:21.823 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:21.815 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:21.804 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:21.789 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:21.735 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:21.723 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:21.708 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:21.696 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:21.663 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:21.556 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:21.533 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:21.510 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:19.396 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:19.383 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:19.370 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:19.362 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:19.343 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:19.329 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:19.152 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:19.138 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:06.370 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:06.360 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:06.358 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:06.347 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:06.344 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:06.334 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:06.107 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:06.092 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:04.365 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:04.351 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:04.329 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:04.316 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:04.289 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:04.087 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:04.073 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:04.058 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:00.155 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:00.147 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:13:00.138 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:51.382 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:51.374 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:51.258 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:51.234 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:51.209 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:51.181 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:51.160 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:51.134 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:49.367 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:49.355 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:49.345 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:49.339 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:49.323 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:49.299 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:49.193 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:49.159 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:36.377 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:36.369 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:36.361 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:36.254 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:36.240 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:36.226 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:36.068 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:36.046 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:35.050 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:34.797 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:34.771 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:34.768 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:34.755 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:34.753 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:34.747 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:34.733 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:34.732 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:34.705 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:34.488 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:34.466 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:34.440 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:12:32.657 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:12:32.655 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:12:32.653 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:12:32.651 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:12:32.648 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:12:32.646 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:22.010 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:21.847 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:21.838 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:21.831 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:21.823 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:21.743 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:21.730 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:21.728 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:21.702 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:21.680 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:21.447 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:21.427 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:21.399 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:19.456 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:19.443 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:19.431 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:19.300 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:19.264 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:19.250 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:19.117 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:19.082 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:06.378 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:06.371 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:06.362 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:06.276 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:06.264 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:06.251 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:06.121 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:06.106 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:04.355 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:04.341 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:04.334 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:04.321 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:04.304 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:04.162 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:04.141 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:04.117 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:00.258 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:00.250 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:00.241 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:12:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:51.378 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:51.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:51.330 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:51.316 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:51.302 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:51.130 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:51.105 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:51.082 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:49.473 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:49.452 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:49.427 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:49.396 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:49.373 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:49.345 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:49.069 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:49.054 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:36.411 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:36.403 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:36.395 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:36.310 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:36.297 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:36.284 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:36.182 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:36.147 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:35.100 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:34.929 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:34.907 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:34.895 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:34.883 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:34.857 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:34.833 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:34.805 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:34.578 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:34.571 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:34.550 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:34.543 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:34.517 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:11:32.648 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:11:32.646 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:11:32.644 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:11:32.642 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:11:32.639 +0000] "GET /services/server/info HTTP/1.1" 200 1564 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:11:32.637 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:21.972 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:21.796 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:21.782 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:21.770 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:21.758 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:21.748 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:21.734 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:21.724 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:21.712 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:21.695 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:21.625 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:21.604 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:21.576 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:19.383 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:19.370 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:19.356 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:19.286 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:19.272 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:19.043 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:19.021 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:19.005 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:06.369 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:06.361 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:06.350 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:06.316 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:06.302 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:06.117 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:06.103 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:06.088 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:04.394 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:04.381 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:04.367 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:04.291 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:04.277 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:04.112 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:04.093 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:04.073 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:00.212 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:00.195 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:00.161 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:00.153 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:11:00.144 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:51.356 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:51.344 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:51.339 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:51.330 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:51.325 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:51.211 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:51.197 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:51.183 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:49.369 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:49.360 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:49.307 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:49.294 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:49.279 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:49.119 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:49.093 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:49.079 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:36.393 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:36.385 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:36.377 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:36.295 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:36.281 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:36.117 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:36.104 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:36.090 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:35.055 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:34.846 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:34.824 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:34.795 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:34.776 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:34.762 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:34.740 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:34.713 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:34.658 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:34.629 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:34.628 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:34.608 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:34.584 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:10:32.644 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:10:32.642 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:10:32.640 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:10:32.638 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:10:32.635 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:10:32.633 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:22.410 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:22.248 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:22.240 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:22.232 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:22.225 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:22.122 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:22.103 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:22.077 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:22.026 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:22.013 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:21.996 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:21.907 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:21.892 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:21.569 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:21.534 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:21.496 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:19.461 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:19.448 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:19.435 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:19.205 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:19.191 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:19.153 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:19.132 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:19.104 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:06.380 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:06.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:06.360 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:06.354 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:06.347 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:06.161 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:06.140 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:06.125 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:04.377 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:04.363 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:04.349 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:04.323 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:04.304 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:04.117 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:04.090 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:04.063 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:00.253 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:00.245 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:00.236 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:10:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:51.391 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:51.383 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:51.375 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:51.265 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:51.251 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:51.181 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:51.156 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:51.134 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:49.341 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:49.336 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:49.328 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:49.322 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:49.308 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:49.123 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:49.088 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:49.063 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:36.423 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:36.415 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:36.407 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:36.250 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:36.237 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:36.231 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:36.210 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:36.187 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:35.067 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:34.886 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:34.871 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:34.858 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:34.844 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:34.673 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:34.667 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:34.642 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:34.636 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:34.621 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:34.567 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:34.540 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:34.518 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:09:32.641 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:09:32.639 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:09:32.637 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:09:32.636 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 869 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:09:32.632 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:09:32.630 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 869 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:21.974 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:21.809 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:21.796 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:21.783 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:21.776 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:21.768 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:21.764 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:21.752 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:21.613 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:21.590 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:21.403 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:21.387 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:21.372 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:19.339 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:19.327 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:19.326 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:19.311 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:19.297 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:19.097 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:19.084 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:19.057 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:06.410 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:06.402 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:06.394 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:06.337 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:06.322 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:06.240 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:06.227 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:06.212 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:04.412 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:04.398 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:04.384 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:04.242 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:04.216 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:04.186 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:04.175 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:04.147 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:00.202 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:00.193 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:00.167 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:00.159 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:09:00.150 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:51.391 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:51.383 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:51.375 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:51.267 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:51.253 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:51.132 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:51.107 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:51.084 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:49.362 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:49.349 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:49.304 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:49.272 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:49.271 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:49.255 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:49.241 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:49.240 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:36.406 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:36.405 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:36.392 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:36.392 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:36.379 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:36.378 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:36.213 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:36.196 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:35.505 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:35.343 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:35.334 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:35.325 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:35.312 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:35.208 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:35.181 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:35.160 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:35.074 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:35.041 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:35.010 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:34.985 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:34.958 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:34.626 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:34.582 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:34.560 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:08:32.638 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:08:32.636 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:08:32.634 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:08:32.632 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:08:32.629 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:08:32.627 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:21.982 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:21.805 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:21.782 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:21.772 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:21.757 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:21.756 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:21.748 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:21.739 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:21.734 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:21.725 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:21.513 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:21.499 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:21.485 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:19.391 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:19.378 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:19.365 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:19.269 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:19.255 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:19.004 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:18.991 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:18.976 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:06.386 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:06.378 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:06.370 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:06.282 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:06.269 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:06.257 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:06.194 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:06.179 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:04.342 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:04.329 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:04.326 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:04.313 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:04.287 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:04.163 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:04.142 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:04.121 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:00.255 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:00.247 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:00.238 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:00.214 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:08:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:51.377 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:51.364 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:51.353 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:51.340 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:51.326 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:51.251 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:51.238 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:51.223 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:49.352 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:49.339 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:49.324 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:49.311 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:49.285 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:49.166 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:49.140 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:49.119 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:36.360 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:36.348 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:36.341 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:36.333 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:36.328 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:36.316 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:36.072 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:36.040 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:35.053 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:34.859 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:34.845 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:34.831 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:34.817 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:34.702 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:34.678 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:34.667 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:34.653 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:34.624 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:34.552 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:34.529 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:34.505 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:07:32.628 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:07:32.626 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:07:32.624 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:07:32.623 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:07:32.620 +0000] "GET /services/server/info HTTP/1.1" 200 1561 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:07:32.617 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:22.037 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:21.834 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:21.826 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:21.818 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:21.810 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:21.719 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:21.697 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:21.681 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:21.675 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:21.652 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:21.626 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:21.595 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:21.560 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:19.468 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:19.460 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:19.448 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:19.261 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:19.248 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:19.233 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:19.136 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:19.105 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:06.359 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:06.349 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:06.345 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:06.335 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:06.332 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:06.321 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:06.050 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:06.022 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:04.386 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:04.374 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:04.359 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:04.285 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:04.271 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:04.158 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:04.137 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:04.109 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:00.211 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:00.203 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:00.166 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:00.158 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:07:00.149 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:51.379 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:51.366 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:51.353 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:51.343 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:51.329 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:51.219 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:51.189 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:51.174 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:49.390 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:49.377 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:49.363 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:49.291 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:49.276 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:49.187 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:49.166 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:49.136 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:36.367 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:36.359 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:36.351 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:36.283 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:36.270 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:36.256 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:36.184 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:36.156 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:35.047 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:34.832 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:34.815 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:34.788 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:34.775 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:34.751 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:34.730 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:34.704 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:34.661 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:34.628 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:34.580 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:34.547 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:34.520 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:06:32.623 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:06:32.621 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:06:32.619 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:06:32.617 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:06:32.614 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:06:32.612 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:21.979 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:21.816 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:21.807 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:21.797 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:21.769 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:21.724 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:21.719 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:21.706 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:21.702 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:21.690 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:21.584 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:21.558 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:21.533 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:19.404 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:19.391 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:19.376 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:19.276 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:19.263 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:19.110 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:19.082 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:19.058 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:06.379 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:06.371 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:06.363 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:06.256 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:06.243 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:06.228 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:06.136 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:06.097 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:04.412 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:04.399 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:04.385 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:04.257 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:04.243 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:04.229 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:04.202 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:04.172 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:00.248 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:00.240 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:00.231 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:00.211 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:00.203 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:06:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:51.378 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:51.366 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:51.351 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:51.343 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:51.329 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:51.207 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:51.190 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:51.168 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:49.405 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:49.391 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:49.377 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:49.248 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:49.242 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:49.227 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:49.227 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:49.196 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:36.392 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:36.384 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:36.376 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:36.251 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:36.238 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:36.224 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:36.177 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:36.160 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:35.046 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:34.826 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:34.811 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:34.796 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:34.783 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:34.779 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:34.758 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:34.735 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:34.615 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:34.610 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:34.589 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:34.583 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:34.556 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:05:32.617 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:05:32.615 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:05:32.613 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:05:32.612 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:05:32.609 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:05:32.606 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:22.289 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:22.126 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:22.117 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:22.110 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:22.102 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:22.028 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:22.003 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:21.962 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:21.940 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:21.912 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:21.877 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:21.848 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:21.820 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:21.558 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:21.519 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:21.483 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:19.391 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:19.378 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:19.364 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:19.284 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:19.270 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:19.201 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:19.188 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:19.173 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:06.379 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:06.372 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:06.363 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:06.316 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:06.303 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:06.288 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:06.228 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:06.213 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:04.399 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:04.386 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:04.361 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:04.333 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:04.312 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:04.286 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:04.223 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:04.201 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:00.214 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:00.206 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:00.167 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:00.159 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:05:00.150 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:51.384 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:51.376 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:51.312 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:51.311 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:51.297 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:51.288 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:51.263 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:51.261 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:49.439 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:49.425 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:49.401 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:49.293 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:49.279 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:49.260 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:49.202 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:49.187 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:36.372 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:36.364 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:36.355 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:36.311 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:36.298 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:36.284 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:36.193 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:36.171 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:35.058 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:34.849 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:34.826 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:34.805 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:34.779 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:34.770 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:34.747 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:34.717 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:34.660 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:34.638 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:34.536 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:34.506 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:34.477 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:04:32.613 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:04:32.611 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:04:32.609 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:04:32.607 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:04:32.604 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:04:32.602 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:21.986 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:21.824 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:21.816 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:21.808 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:21.800 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:21.736 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:21.722 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:21.592 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:21.572 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:21.571 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:21.549 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:21.547 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:21.525 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:19.396 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:19.383 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:19.369 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:19.258 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:19.244 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:19.143 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:19.129 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:19.115 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:06.359 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:06.348 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:06.341 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:06.331 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:06.329 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:06.316 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:06.095 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:06.080 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:04.384 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:04.371 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:04.350 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:04.307 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:04.294 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:04.280 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:04.214 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:04.192 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:00.253 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:00.245 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:00.235 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:00.214 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:04:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:51.370 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:51.357 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:51.336 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:51.323 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:51.309 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:51.192 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:51.179 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:51.164 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:49.342 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:49.326 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:49.293 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:49.291 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:49.284 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:49.274 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:49.251 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:49.246 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:36.362 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:36.352 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:36.339 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:36.316 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:36.303 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:36.289 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:36.179 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:36.164 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:35.395 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:35.227 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:35.218 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:35.211 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:35.203 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:35.115 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:35.102 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:35.089 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:34.870 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:34.836 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:34.810 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:34.782 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:34.768 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:34.481 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:34.446 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:34.397 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:03:32.610 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:03:32.608 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:03:32.606 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:03:32.604 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:03:32.601 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:03:32.599 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:22.007 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:21.819 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:21.806 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:21.793 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:21.781 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:21.776 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:21.763 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:21.657 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:21.645 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:21.631 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:21.626 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:21.597 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:21.556 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:19.455 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:19.442 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:19.428 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:19.262 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:19.240 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:19.235 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:19.214 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:19.209 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:06.387 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:06.379 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:06.371 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:06.297 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:06.283 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:06.261 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:06.188 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:06.162 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:04.377 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:04.363 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:04.350 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:04.330 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:04.317 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:04.014 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:04.000 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:03.985 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:00.212 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:00.169 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:00.161 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:03:00.152 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:51.394 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:51.386 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:51.315 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:51.302 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:51.287 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:51.159 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:51.137 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:51.108 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:49.464 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:49.456 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:49.442 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:49.306 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:49.284 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:49.263 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:49.173 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:49.148 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:36.356 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:36.348 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:36.343 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:36.334 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:36.328 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:36.202 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:36.175 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:36.158 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:35.074 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:34.884 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:34.869 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:34.856 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:34.842 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:34.696 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:34.674 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:34.674 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:34.652 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:34.638 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:34.391 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:34.378 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:34.363 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:02:32.605 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:02:32.603 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:02:32.601 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:02:32.599 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:02:32.596 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:02:32.594 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:21.994 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:21.831 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:21.822 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:21.814 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:21.802 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:21.766 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:21.744 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:21.720 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:21.690 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:21.667 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:21.653 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:21.516 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:21.493 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:19.390 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:19.377 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:19.363 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:19.273 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:19.252 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:19.222 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:19.218 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:19.203 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:06.359 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:06.346 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:06.333 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:06.317 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:06.303 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:06.102 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:06.080 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:06.058 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:04.346 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:04.333 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:04.319 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:04.319 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:04.293 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:04.126 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:04.112 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:04.098 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:00.250 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:00.242 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:00.232 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:00.214 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:00.206 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:02:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:51.376 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:51.363 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:51.351 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:51.349 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:51.337 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:51.323 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:51.238 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:51.216 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:49.351 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:49.338 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:49.337 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:49.324 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:49.322 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:49.134 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:49.121 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:49.107 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:36.348 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:36.336 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:36.324 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:36.323 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:36.310 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:36.085 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:36.072 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:36.057 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:35.088 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:34.924 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:34.916 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:34.908 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:34.900 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:34.715 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:34.690 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:34.662 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:34.624 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:34.603 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:34.583 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:34.570 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:34.561 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:01:32.597 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:01:32.594 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:01:32.593 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:01:32.591 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:01:32.588 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:01:32.585 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:22.022 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:21.846 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:21.837 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:21.829 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:21.822 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:21.752 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:21.727 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:21.714 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:21.701 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:21.689 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:21.688 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:21.684 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:21.653 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:19.372 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:19.353 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:19.321 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:19.309 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:19.308 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:19.274 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:19.269 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:19.252 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:06.384 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:06.370 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:06.356 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:06.340 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:06.326 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:06.125 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:06.112 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:06.096 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:04.419 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:04.406 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:04.391 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:04.260 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:04.250 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:04.244 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:04.229 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:04.198 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:00.465 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6485 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:00.441 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:00.214 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:00.206 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:00.170 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:00.162 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:01:00.152 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:51.385 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:51.378 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:51.369 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:51.276 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:51.264 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:51.250 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:51.150 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:51.135 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:49.423 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:49.409 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:49.395 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:49.265 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:49.251 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:49.173 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:49.159 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:49.144 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:36.350 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:36.337 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:36.319 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:36.306 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:36.292 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:36.094 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:36.069 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:36.055 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:35.074 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:34.864 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:34.850 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:34.836 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:34.818 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:34.685 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:34.675 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:34.674 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:34.659 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:34.648 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:34.644 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:34.639 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:34.606 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:00:32.591 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:00:32.589 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:00:32.587 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1045 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:00:32.585 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:17:00:32.582 +0000] "GET /services/server/info HTTP/1.1" 200 1559 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:17:00:32.580 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:23.157 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.993 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.978 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.965 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.951 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.865 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.832 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.798 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.764 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.762 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.734 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.734 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.712 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.453 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.400 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.343 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.229 +0000] "GET /servicesNS/nobody/splunk_monitoring_console/configs/conf-splunk_monitoring_console_assets/settings?output_mode=json HTTP/1.0" 200 1904 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.115 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6167 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:22.045 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6167 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:21.785 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=638fa9658a1d0238_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS9ec0bcf3f4088903%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:21.725 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=d4a7169e28bc17c4_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS9ec0bcf3f4088903%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:21.346 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6948 "-" "splunk-sdk-python/1.6.14" - - - 727ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:21.334 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6948 "-" "splunk-sdk-python/1.6.14" - - - 833ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:19.417 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:19.402 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:19.388 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:19.258 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:19.246 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:19.139 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:19.125 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:19.110 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:06.349 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:06.345 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:06.335 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:06.333 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:06.320 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:06.318 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:06.121 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:06.097 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:04.499 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:04.491 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:04.483 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:04.248 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:04.221 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:04.190 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:04.162 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:04.142 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:00.388 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:00.378 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:00.362 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:00.308 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 7ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:00.294 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:17:00:00.277 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:51.370 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:51.359 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:51.325 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:51.310 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:51.296 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:51.101 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:51.088 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:51.064 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:49.441 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:49.429 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:49.415 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:49.262 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:49.241 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:49.215 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:49.153 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:49.129 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:36.360 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:36.353 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:36.341 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:36.309 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:36.295 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:36.281 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:36.108 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:36.094 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:35.041 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:34.817 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:34.802 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:34.777 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:34.756 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:34.756 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:34.735 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:34.704 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:34.693 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:34.670 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:34.600 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:34.575 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:34.551 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:59:32.583 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:59:32.581 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:59:32.579 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:59:32.577 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:59:32.574 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:59:32.572 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:21.998 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:21.834 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:21.826 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:21.818 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:21.810 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:21.698 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:21.685 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:21.673 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:21.670 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:21.650 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:21.569 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:21.544 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:21.522 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:19.344 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:19.337 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:19.328 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:19.314 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:19.312 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:19.281 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:19.213 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:19.182 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:06.427 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:06.420 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:06.412 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:06.282 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:06.268 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:06.253 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:06.178 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:06.163 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:04.353 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:04.340 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:04.307 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:04.285 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:04.270 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:04.120 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:04.088 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:04.057 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:00.195 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:00.167 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:00.159 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:59:00.150 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:51.396 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:51.388 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:51.295 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:51.282 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:51.254 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:51.238 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:51.225 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:51.210 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:49.379 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:49.358 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:49.345 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:49.302 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:49.276 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:49.259 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:49.184 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:49.162 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:36.378 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:36.371 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:36.363 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:36.246 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:36.229 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:36.213 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:36.179 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:36.156 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:35.507 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:35.338 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:35.325 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:35.308 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:35.286 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:35.102 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:35.074 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:35.066 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:35.037 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:35.010 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:35.005 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:34.980 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:34.953 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:34.586 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:34.549 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:34.506 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:58:32.579 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:58:32.577 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:58:32.575 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:58:32.574 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:58:32.571 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:58:32.568 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:21.976 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:21.814 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:21.805 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:21.797 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:21.790 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:21.742 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:21.728 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:21.638 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:21.617 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:21.587 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:21.481 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:21.460 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:21.433 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:19.473 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:19.461 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:19.448 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:19.423 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:19.409 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:19.392 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:19.080 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:19.065 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:06.397 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:06.389 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:06.381 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:06.329 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:06.316 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:06.301 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:06.116 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:06.101 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:04.447 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:04.434 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:04.416 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:04.229 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:04.212 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:04.212 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:04.183 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:04.183 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:00.287 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 6ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:00.273 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:00.257 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:00.215 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:00.207 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:58:00.197 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:51.383 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:51.374 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:51.257 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:51.242 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:51.221 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:51.184 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:51.171 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:51.156 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:49.413 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:49.399 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:49.385 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:49.265 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:49.252 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:49.112 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:49.091 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:49.067 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:36.366 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:36.358 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:36.346 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:36.310 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:36.296 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:36.282 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:36.178 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:36.164 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:35.070 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:34.889 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:34.874 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:34.861 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:34.848 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:34.703 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:34.680 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:34.674 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:34.659 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:34.659 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:34.502 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:34.476 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:34.456 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:57:32.573 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:57:32.571 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:57:32.569 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:57:32.567 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:57:32.564 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:57:32.562 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:21.983 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:21.819 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:21.810 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:21.803 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:21.791 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:21.735 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:21.714 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:21.696 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:21.682 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:21.669 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:21.592 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:21.568 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:21.541 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:19.353 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:19.340 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:19.325 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:19.319 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:19.305 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:19.167 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:19.149 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:19.126 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:06.368 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:06.360 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:06.352 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:06.290 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:06.276 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:06.262 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:06.076 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:06.054 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:04.403 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:04.390 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:04.376 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:04.268 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:04.254 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:04.132 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:04.117 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:04.103 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:00.207 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:00.199 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:57:00.189 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:51.379 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:51.371 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:51.298 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:51.276 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:51.261 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:51.250 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:51.245 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:51.231 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:49.350 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:49.337 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:49.315 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:49.301 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:49.286 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:49.163 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:49.150 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:49.128 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:36.371 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:36.363 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:36.355 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:36.292 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:36.279 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:36.265 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:36.204 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:36.181 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:35.032 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:34.796 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:34.782 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:34.769 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:34.759 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:34.757 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:34.746 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:34.710 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:34.698 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:34.684 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:34.546 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:34.532 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:34.515 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:56:32.570 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:56:32.568 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:56:32.566 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:56:32.564 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:56:32.561 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:56:32.559 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:21.970 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:21.803 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:21.789 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:21.776 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:21.773 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:21.761 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:21.759 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:21.675 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:21.661 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:21.648 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:21.509 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:21.482 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:21.457 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:19.384 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:19.370 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:19.348 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:19.281 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:19.267 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:19.147 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:19.133 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:19.118 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:06.358 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:06.347 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:06.334 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:06.314 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:06.305 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:06.290 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:06.107 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:06.093 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:04.368 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:04.354 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:04.340 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:04.316 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:04.290 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:04.160 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:04.135 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:04.121 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:00.249 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:00.241 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:00.231 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:00.218 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:00.210 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:56:00.200 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:51.350 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:51.337 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:51.327 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:51.315 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:51.301 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:51.176 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:51.163 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:51.141 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:49.446 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:49.434 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:49.421 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:49.214 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:49.199 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:49.125 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:49.099 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:49.070 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:36.366 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:36.358 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:36.350 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:36.264 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:36.251 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:36.238 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:36.147 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:36.116 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:35.080 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:34.895 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:34.880 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:34.863 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:34.850 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:34.786 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:34.764 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:34.742 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:34.614 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:34.586 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:34.540 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:34.515 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:34.489 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:55:32.568 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:55:32.566 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:55:32.564 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:55:32.562 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:55:32.559 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:55:32.557 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:22.291 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:22.122 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:22.108 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:22.095 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:22.094 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:22.081 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:22.080 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:22.068 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:21.972 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:21.944 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:21.943 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:21.921 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:21.874 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:21.585 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:21.548 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:21.511 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:19.452 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:19.440 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:19.428 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:19.227 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:19.213 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:19.126 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:19.111 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:19.095 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:06.409 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:06.402 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:06.394 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:06.288 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:06.274 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:06.233 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:06.220 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:06.205 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:04.404 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:04.391 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:04.377 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:04.268 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:04.254 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:04.187 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:04.174 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:04.159 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:00.212 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:00.172 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:00.164 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:55:00.155 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:51.382 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:51.374 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:51.366 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:51.300 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:51.286 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:51.243 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:51.222 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:51.196 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:49.361 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:49.339 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:49.324 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:49.291 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:49.276 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:49.075 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:49.062 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:49.047 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:36.361 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:36.348 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:36.341 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:36.326 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:36.312 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:36.128 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:36.116 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:36.101 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:35.048 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:34.828 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:34.813 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:34.791 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:34.770 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:34.758 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:34.734 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:34.703 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:34.679 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:34.657 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:34.500 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:34.473 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:34.445 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:54:32.564 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:54:32.561 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:54:32.560 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:54:32.558 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:54:32.555 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:54:32.553 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:22.016 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:21.851 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:21.842 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:21.835 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:21.827 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:21.765 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:21.752 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:21.738 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:21.720 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:21.690 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:21.620 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:21.592 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:21.560 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:19.404 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:19.391 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:19.377 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:19.252 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:19.238 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:19.062 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:19.049 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:19.034 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:06.382 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:06.375 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:06.367 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:06.254 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:06.239 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:06.224 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:06.214 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:06.199 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:04.402 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:04.389 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:04.375 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:04.265 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:04.251 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:04.097 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:04.077 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:04.063 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:00.247 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:00.239 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:00.229 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:00.214 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:54:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:51.383 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:51.376 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:51.367 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:51.301 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:51.273 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:51.251 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:51.232 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:51.197 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:49.430 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:49.417 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:49.403 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:49.240 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:49.226 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:49.123 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:49.110 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:49.091 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:36.417 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:36.405 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:36.391 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:36.381 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:36.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:36.197 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:36.184 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:36.170 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:35.378 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:35.210 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:35.202 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:35.194 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:35.186 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:35.004 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:34.974 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:34.952 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:34.862 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:34.851 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:34.830 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:34.829 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:34.809 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:34.465 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:34.434 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:34.387 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:53:32.557 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:53:32.555 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:53:32.554 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:53:32.552 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:53:32.549 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:53:32.547 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:22.001 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:21.827 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:21.818 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:21.811 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:21.803 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:21.725 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:21.699 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:21.680 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:21.666 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:21.652 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:21.452 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:21.432 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:21.404 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:19.391 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:19.379 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:19.364 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:19.265 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:19.251 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:19.153 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:19.138 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:19.124 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:06.361 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:06.360 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:06.348 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:06.346 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:06.333 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:06.193 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:06.168 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:06.146 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:04.406 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:04.393 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:04.379 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:04.259 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:04.246 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:04.204 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:04.176 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:04.156 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:00.212 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:00.195 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:00.171 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:00.163 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:53:00.154 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:51.374 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:51.366 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:51.358 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:51.280 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:51.266 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:51.253 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:51.159 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:51.144 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:49.383 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:49.370 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:49.356 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:49.278 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:49.264 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:49.023 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:49.010 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:48.986 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:36.393 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:36.385 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:36.372 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:36.344 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:36.329 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:36.138 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:36.116 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:36.093 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:35.068 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:34.904 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:34.896 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:34.888 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:34.880 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:34.737 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:34.717 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:34.691 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:34.554 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:34.530 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:34.420 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:34.391 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:34.365 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:52:32.555 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:52:32.552 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:52:32.550 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:52:32.549 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:52:32.546 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:52:32.543 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:21.972 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:21.810 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:21.801 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:21.793 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:21.786 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:21.705 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:21.692 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:21.678 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:21.558 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:21.515 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:21.501 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:21.471 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:21.456 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:19.425 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:19.411 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:19.397 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:19.259 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:19.241 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:19.159 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:19.135 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:19.111 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:06.366 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:06.353 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:06.342 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:06.329 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:06.315 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:06.157 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:06.128 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:06.102 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:04.408 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:04.395 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:04.381 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:04.262 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:04.248 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:04.186 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:04.157 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:04.135 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:00.248 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:00.240 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:00.231 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:52:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:51.399 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:51.390 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:51.376 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:51.350 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:51.336 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:51.102 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:51.088 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:51.073 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:49.387 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:49.375 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:49.361 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:49.287 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:49.272 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:49.165 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:49.152 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:49.137 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:36.370 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:36.362 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:36.354 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:36.262 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:36.238 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:36.190 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:36.168 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:36.142 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:35.049 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:34.831 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:34.816 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:34.803 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:34.790 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:34.745 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:34.731 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:34.642 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:34.602 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:34.576 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:34.528 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:34.503 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:34.480 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:51:32.547 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:51:32.544 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:51:32.543 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:51:32.541 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:51:32.538 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:51:32.536 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:22.009 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:21.820 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:21.811 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:21.804 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:21.796 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:21.749 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:21.721 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:21.705 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:21.692 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:21.678 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:21.510 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:21.488 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:21.466 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:19.424 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:19.410 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:19.396 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:19.248 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:19.235 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:19.225 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:19.204 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:19.175 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:06.402 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:06.395 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:06.387 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:06.273 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:06.259 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:06.132 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:06.111 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:06.088 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:04.385 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:04.373 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:04.360 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:04.268 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:04.239 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:04.218 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:04.180 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:04.166 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:00.191 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:00.171 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:00.163 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:51:00.154 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:51.365 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:51.352 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:51.328 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:51.315 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:51.300 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:51.236 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:51.207 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:51.184 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:49.381 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:49.367 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:49.353 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:49.290 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:49.276 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:49.123 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:49.103 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:49.088 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:36.371 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:36.363 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:36.355 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:36.308 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:36.294 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:36.055 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:36.042 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:36.028 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:35.091 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:34.927 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:34.919 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:34.911 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:34.903 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:34.815 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:34.790 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:34.764 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:34.757 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:34.735 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:34.706 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:34.346 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:34.315 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:50:32.546 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:50:32.544 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:50:32.542 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:50:32.540 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:50:32.537 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:50:32.535 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:22.454 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:22.292 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:22.284 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:22.276 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:22.268 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:22.124 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:22.099 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:22.080 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:22.068 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:22.055 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:22.029 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:22.029 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:22.005 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:21.680 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:21.648 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:21.601 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:19.351 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:19.338 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:19.324 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:19.307 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:19.283 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:19.090 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:19.069 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:19.045 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:06.365 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:06.357 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:06.288 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:06.275 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:06.260 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:06.100 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:06.081 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:06.066 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:04.472 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:04.464 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:04.456 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:04.248 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:04.225 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:04.203 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:04.162 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:04.149 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:00.251 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:00.243 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:00.233 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:00.215 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:00.207 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:50:00.198 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:51.398 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:51.385 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:51.372 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:51.365 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:51.350 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:51.336 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:51.192 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:51.177 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:49.354 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:49.340 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:49.326 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:49.310 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:49.286 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:49.062 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:49.037 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:49.023 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:36.361 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:36.353 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:36.301 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:36.287 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:36.273 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:36.119 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:36.097 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:36.072 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:35.080 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:34.917 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:34.908 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:34.901 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:34.893 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:34.748 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:34.708 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:34.661 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:34.660 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:34.635 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:34.605 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:34.506 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:34.478 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:49:32.555 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:49:32.553 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:49:32.551 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:49:32.549 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:49:32.546 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:49:32.544 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:21.990 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:21.827 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:21.819 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:21.811 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:21.803 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:21.713 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:21.687 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:21.684 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:21.671 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:21.670 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:21.654 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:21.416 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:21.394 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:19.356 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:19.343 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:19.325 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:19.291 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:19.277 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:19.129 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:19.108 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:19.078 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:06.362 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:06.349 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:06.339 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:06.326 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:06.311 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:06.177 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:06.164 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:06.144 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:04.409 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:04.396 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:04.383 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:04.316 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:04.285 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:04.260 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:04.141 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:04.114 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:00.214 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:00.195 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:00.170 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:00.162 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:49:00.152 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:51.396 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:51.388 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:51.380 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:51.325 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:51.312 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:51.298 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:51.168 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:51.145 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:49.314 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:49.304 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:49.291 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:49.277 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:49.266 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:49.265 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:49.240 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:49.213 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.668 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.420 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.398 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.368 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.360 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.352 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.337 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.307 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.294 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.280 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.151 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.131 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.093 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.083 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.069 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.055 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.046 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:36.023 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:35.993 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:35.885 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:35.858 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:35.618 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:35.582 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:35.544 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:35.504 +0000] "GET /servicesNS/nobody/splunk_monitoring_console/configs/conf-splunk_monitoring_console_assets/settings?output_mode=json HTTP/1.0" 200 1904 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:48:35.123 +0000] "GET /services/search/jobs/remote_sh1_SummaryDirector_1673369314.28/search_telemetry.json HTTP/1.1" 200 707 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:48:35.119 +0000] "GET /services/search/jobs/remote_sh1_SummaryDirector_1673369314.28/search.log HTTP/1.1" 200 1581 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:48:35.073 +0000] "GET /services/search/jobs/remote_sh1_SummaryDirector_1673369314.27/search_telemetry.json HTTP/1.1" 200 704 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:48:35.067 +0000] "GET /services/search/jobs/remote_sh1_SummaryDirector_1673369314.27/search.log HTTP/1.1" 200 2940 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:48:35.064 +0000] "POST /services/streams/search?sh_sid=SummaryDirector_1673369314.28 HTTP/1.1" 200 1468 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 12ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:48:34.998 +0000] "POST /services/streams/search?sh_sid=SummaryDirector_1673369314.27 HTTP/1.1" 200 1464 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 56ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:34.925 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6126 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:34.924 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6126 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:34.444 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=a1cd68c92b830785_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:34.440 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=f771fdc7037bdd35_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:33.963 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6904 "-" "splunk-sdk-python/1.6.14" - - - 993ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:33.941 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6904 "-" "splunk-sdk-python/1.6.14" - - - 1006ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:48:32.550 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:48:32.548 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:48:32.546 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:48:32.544 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:48:32.541 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:48:32.539 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:21.999 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:21.829 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:21.820 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:21.812 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:21.803 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:21.763 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:21.750 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:21.715 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:21.709 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:21.676 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:21.656 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:21.465 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:21.428 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:19.457 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:19.448 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:19.436 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:19.379 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:19.355 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:19.320 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:19.113 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:19.099 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:06.344 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:06.343 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:06.331 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:06.325 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:06.319 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:06.152 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:06.139 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:06.124 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:04.352 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:04.339 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:04.315 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:04.290 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:04.276 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:04.219 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:04.205 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:04.190 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:00.250 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:00.242 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:00.232 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:00.203 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:48:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:51.361 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:51.348 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:51.335 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:51.333 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:51.321 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:51.307 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:51.153 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:51.126 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:49.445 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:49.432 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:49.419 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:49.280 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:49.267 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:49.251 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:49.170 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:49.155 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:36.391 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:36.383 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:36.260 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:36.249 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:36.228 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:36.205 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:36.181 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:36.156 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:35.029 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:34.782 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:34.777 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:34.764 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:34.764 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:34.733 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:34.721 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:34.706 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:34.682 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:34.654 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:34.577 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:34.540 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:34.506 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:47:32.560 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:47:32.558 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:47:32.556 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:47:32.554 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:47:32.551 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:47:32.549 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:22.028 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:21.854 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:21.845 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:21.837 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:21.830 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:21.737 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:21.715 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:21.701 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:21.647 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:21.625 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:21.590 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:21.552 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:21.524 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:19.395 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:19.383 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:19.369 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:19.248 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:19.224 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:19.206 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:19.202 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:19.177 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:06.364 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:06.357 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:06.346 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:06.310 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:06.297 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:06.247 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:06.224 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:06.202 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:04.371 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:04.363 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:04.301 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:04.289 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:04.274 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:04.195 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:04.168 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:04.153 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:00.214 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:00.206 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:00.172 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:00.165 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:47:00.155 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:51.379 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:51.372 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:51.363 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:51.267 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:51.254 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:51.239 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:51.093 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:51.068 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:49.389 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:49.376 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:49.362 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:49.225 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:49.213 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:49.210 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:49.190 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:49.176 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:36.367 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:36.359 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:36.309 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:36.296 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:36.281 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:36.100 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:36.087 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:36.073 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:35.028 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:34.782 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:34.774 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:34.769 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:34.760 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:34.755 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:34.741 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:34.664 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:34.637 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:34.616 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:34.547 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:34.514 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:34.478 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:46:32.554 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:46:32.552 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:46:32.551 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:46:32.549 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:46:32.546 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:46:32.544 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:21.981 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:21.808 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:21.799 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:21.792 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:21.781 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:21.704 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:21.680 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:21.668 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:21.656 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:21.641 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:21.626 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:21.492 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:21.469 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:19.407 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:19.392 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:19.391 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:19.376 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:19.370 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:19.360 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:19.156 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:19.131 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:06.370 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:06.362 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:06.354 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:06.300 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:06.286 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:06.098 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:06.074 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:06.052 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:04.432 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:04.418 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:04.404 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:04.244 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:04.220 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:04.162 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:04.149 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:04.135 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:00.249 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:00.241 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:00.232 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:46:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:51.367 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:51.359 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:51.350 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:51.304 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:51.291 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:51.277 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:51.072 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:51.057 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:49.403 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:49.390 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:49.375 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:49.261 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:49.247 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:49.147 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:49.126 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:49.105 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:36.327 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:36.302 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:36.301 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:36.292 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:36.288 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:36.277 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:36.274 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:36.264 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:35.043 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:34.835 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:34.821 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:34.793 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:34.780 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:34.763 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:34.736 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:34.720 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:34.651 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:34.629 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:34.439 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:34.404 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:34.373 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:45:32.561 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:45:32.559 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:45:32.557 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:45:32.555 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:45:32.552 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:45:32.550 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:22.287 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:22.126 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:22.117 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:22.109 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:22.101 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:22.002 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:21.975 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:21.962 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:21.949 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:21.925 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:21.895 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:21.861 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:21.839 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:21.514 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:21.471 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:21.435 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:19.386 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:19.373 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:19.359 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:19.271 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:19.240 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:19.233 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:19.209 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:19.179 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:06.389 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:06.382 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:06.374 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:06.328 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:06.315 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:06.179 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:06.165 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:06.144 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:04.366 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:04.353 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:04.327 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:04.314 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:04.299 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:04.166 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:04.152 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:04.123 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:00.214 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:00.206 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:00.171 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:00.163 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:45:00.154 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:51.364 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:51.352 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:51.338 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:51.330 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:51.317 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:51.260 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:51.247 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:51.232 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:49.333 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:49.322 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:49.319 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:49.305 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:49.291 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:49.213 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:49.199 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:49.184 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:36.344 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:36.332 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:36.331 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:36.317 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:36.313 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:36.284 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:36.249 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:36.226 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:35.043 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:34.823 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:34.808 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:34.795 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:34.783 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:34.716 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:34.704 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:34.695 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:34.682 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:34.648 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:34.544 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:34.514 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:34.476 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:44:32.561 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:44:32.559 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:44:32.557 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:44:32.555 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:44:32.552 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:44:32.550 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:22.022 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:21.848 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:21.840 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:21.828 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:21.816 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:21.796 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:21.782 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:21.673 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:21.651 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:21.638 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:21.560 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:21.524 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:21.496 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:19.444 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:19.432 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:19.418 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:19.291 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:19.269 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:19.254 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:19.179 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:19.164 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:06.343 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:06.336 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:06.327 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:06.324 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:06.314 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:06.309 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:06.139 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:06.102 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:04.392 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:04.379 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:04.365 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:04.286 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:04.263 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:04.185 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:04.171 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:04.157 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:00.246 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:00.238 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:00.228 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:00.214 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:00.206 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:44:00.197 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:51.398 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:51.390 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:51.266 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:51.253 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:51.222 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:51.207 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:51.193 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:51.179 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:49.448 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:49.432 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:49.420 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:49.206 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:49.192 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:49.146 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:49.125 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:49.096 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:36.356 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:36.344 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:36.342 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:36.330 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:36.317 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:36.125 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:36.111 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:36.097 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:35.388 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:35.221 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:35.211 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:35.198 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:35.185 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:34.937 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:34.936 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:34.914 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:34.912 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:34.881 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:34.877 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:34.873 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:34.840 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:34.395 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:34.373 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:34.341 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:43:32.563 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:43:32.561 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:43:32.559 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:43:32.558 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:43:32.555 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:43:32.552 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:21.971 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:21.808 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:21.799 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:21.790 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:21.777 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:21.753 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:21.740 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:21.726 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:21.606 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:21.584 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:21.560 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:21.487 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:21.457 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:19.368 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:19.360 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:19.249 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:19.236 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:19.222 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:19.127 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:19.106 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:19.082 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:17.802 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:17.800 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:17.798 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:17.795 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:17.792 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:43:16.684 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:43:16.681 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:43:16.678 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:43:16.673 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:43:16.657 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:43:16.648 +0000] "GET /servicesNS/admin/search/data/ui/nav/default HTTP/1.0" 200 4573 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:43:16.630 +0000] "GET /servicesNS/admin/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 83739 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:43:16.614 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:43:16.598 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:43:16.586 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:13.290 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:13.288 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:13.285 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:13.282 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:13.279 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:43:11.664 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:43:11.650 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:43:11.469 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:43:11.466 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:43:11.464 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:43:11.455 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:43:11.440 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:43:11.431 +0000] "GET /servicesNS/admin/search/data/ui/nav/default HTTP/1.0" 200 4573 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:43:11.413 +0000] "GET /servicesNS/admin/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 83739 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:43:11.397 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:43:11.382 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:43:11.372 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:06.374 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:06.360 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:06.351 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:06.338 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:06.323 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:06.201 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:06.187 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:06.173 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:04.450 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:04.438 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:04.428 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:04.422 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:04.401 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:04.378 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:04.078 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:04.063 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:00.202 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:00.193 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:00.170 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:00.162 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:43:00.153 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:51.362 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:51.354 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:51.341 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:51.315 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:51.302 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:51.288 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:51.101 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:51.078 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:49.358 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:49.350 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:49.283 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:49.270 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:49.248 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:49.184 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:49.171 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:49.156 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:36.362 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:36.354 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:36.346 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:36.250 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:36.236 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:36.204 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:36.182 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:36.161 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:35.050 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:34.848 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:34.833 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:34.819 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:34.807 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:34.716 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:34.690 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:34.622 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:34.610 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:34.595 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:34.580 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:34.570 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:34.550 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:42:32.562 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:42:32.560 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:42:32.559 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:42:32.557 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:42:32.554 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:42:32.551 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:21.981 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:21.796 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:21.788 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:21.780 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:21.771 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:21.696 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:21.683 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:21.670 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:21.646 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:21.646 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:21.629 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:21.534 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:21.512 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:19.463 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:19.456 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:19.448 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:19.322 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:19.281 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:19.247 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:19.072 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:19.058 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:06.358 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:06.350 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:06.282 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:06.268 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:06.254 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:06.068 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:06.055 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:06.041 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:04.355 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:04.343 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:04.294 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:04.281 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:04.266 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:04.042 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:04.028 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:04.014 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:00.248 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:00.240 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:00.231 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:42:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:51.364 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:51.357 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:51.349 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:51.287 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:51.274 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:51.260 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:51.098 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:51.075 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:49.360 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:49.348 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:49.339 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:49.324 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:49.307 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:49.285 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:49.245 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:49.217 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:36.547 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:36.534 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:36.507 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:36.493 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:36.479 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:36.277 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:36.264 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:36.249 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:35.069 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:34.884 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:34.870 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:34.857 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:34.843 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:34.685 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:34.648 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:34.626 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:34.597 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:34.597 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:34.562 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:34.558 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:34.538 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:41:32.564 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:41:32.562 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:41:32.561 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:41:32.559 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:41:32.556 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:41:32.554 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:21.961 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:21.799 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:21.789 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:21.777 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:21.764 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:21.751 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:21.739 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:21.726 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:21.609 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:21.584 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:21.570 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:21.556 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:21.543 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:19.448 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:19.441 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:19.433 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:19.387 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:19.366 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:19.345 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:19.039 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:19.024 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:06.340 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:06.333 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:06.328 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:06.321 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:06.304 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:06.070 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:06.057 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:06.042 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:04.331 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:04.327 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:04.317 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:04.293 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:04.283 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:04.269 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:04.256 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:04.228 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:00.170 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:00.162 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:41:00.152 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:51.373 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:51.366 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:51.358 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:51.315 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:51.302 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:51.287 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:51.116 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:51.094 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:49.426 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:49.413 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:49.398 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:49.224 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:49.211 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:49.121 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:49.107 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:49.092 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:36.351 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:36.341 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:36.304 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:36.291 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:36.277 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:36.174 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:36.161 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:36.146 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:35.033 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:34.800 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:34.786 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:34.774 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:34.761 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:34.752 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:34.739 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:34.624 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:34.597 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:34.570 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:34.400 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:34.356 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:34.322 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:40:32.564 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:40:32.562 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:40:32.560 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:40:32.559 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:40:32.556 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:40:32.554 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:22.409 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:22.247 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:22.238 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:22.231 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:22.223 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:22.078 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:22.047 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:22.038 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:22.025 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:22.024 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:22.005 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:21.993 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:21.944 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:21.677 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:21.644 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:21.613 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:19.441 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:19.428 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:19.416 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:19.415 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:19.403 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:19.390 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:19.073 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:19.058 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:06.421 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:06.407 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:06.381 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:06.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:06.354 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:06.154 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:06.132 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:06.108 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:04.342 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:04.339 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:04.328 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:04.325 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:04.308 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:04.117 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:04.104 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:04.090 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:00.249 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:00.242 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:00.232 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:00.202 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:40:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:51.367 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:51.360 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:51.352 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:51.307 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:51.294 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:51.279 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:51.083 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:51.069 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:49.371 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:49.358 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:49.344 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:49.340 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:49.320 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:49.294 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:49.132 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:49.104 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:36.433 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:36.424 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:36.368 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:36.355 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:36.340 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:36.247 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:36.226 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:36.202 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:35.074 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:34.911 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:34.903 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:34.895 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:34.887 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:34.765 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:34.741 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:34.727 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:34.577 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:34.544 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:34.539 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:34.523 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:34.512 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:39:32.571 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:39:32.568 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:39:32.567 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:39:32.565 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:39:32.562 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:39:32.559 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:21.979 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:21.817 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:21.808 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:21.801 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:21.793 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:21.690 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:21.678 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:21.672 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:21.661 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:21.647 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:21.626 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:21.532 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:21.506 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:19.418 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:19.405 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:19.390 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:19.251 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:19.236 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:19.186 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:19.164 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:19.138 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:06.364 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:06.350 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:06.332 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:06.320 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:06.305 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:06.105 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:06.083 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:06.068 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:04.360 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:04.347 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:04.332 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:04.309 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:04.285 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:04.156 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:04.142 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:04.117 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:00.202 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:00.171 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:00.163 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:39:00.153 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:51.356 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:51.347 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:51.343 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:51.335 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:51.328 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:51.321 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:51.177 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:51.154 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:49.354 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:49.341 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:49.327 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:49.277 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:49.262 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:49.161 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:49.140 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:49.108 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:36.426 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:36.414 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:36.326 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:36.313 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:36.300 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:36.259 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:36.245 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:36.231 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:35.508 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:35.343 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:35.330 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:35.318 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:35.306 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:35.114 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:35.090 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:35.062 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:35.054 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:35.019 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:34.995 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:34.946 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:34.915 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:34.582 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:34.553 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:34.497 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:38:32.565 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:38:32.563 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:38:32.561 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:38:32.559 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:38:32.556 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:38:32.554 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:21.970 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:21.807 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:21.798 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:21.789 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:21.776 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:21.724 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:21.693 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:21.688 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:21.665 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:21.660 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:21.643 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:21.487 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:21.460 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:19.362 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:19.349 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:19.336 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:19.318 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:19.292 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:19.196 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:19.172 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:19.146 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:06.352 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:06.339 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:06.332 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:06.319 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:06.305 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:06.128 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:06.115 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:06.100 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:04.356 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:04.343 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:04.329 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:04.319 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:04.300 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:04.128 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:04.115 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:04.101 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:00.256 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:00.247 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:00.238 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:00.214 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:00.206 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:38:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:51.373 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:51.365 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:51.357 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:51.272 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:51.259 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:51.246 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:51.070 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:51.040 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:49.387 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:49.374 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:49.359 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:49.307 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:49.283 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:49.160 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:49.147 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:49.131 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:36.352 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:36.340 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:36.340 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:36.326 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:36.326 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:36.096 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:36.074 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:36.045 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:35.036 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:34.820 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:34.805 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:34.786 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:34.764 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:34.764 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:34.743 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:34.713 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:34.632 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:34.604 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:34.570 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:34.547 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:34.518 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:37:32.567 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:37:32.565 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:37:32.563 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:37:32.561 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:37:32.558 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:37:32.556 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:21.962 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:21.783 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:21.770 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:21.758 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:21.756 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:21.743 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:21.730 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:21.725 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:21.708 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:21.675 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:21.507 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:21.486 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:21.456 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:19.371 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:19.358 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:19.343 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:19.299 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:19.284 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:19.099 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:19.086 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:19.071 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:06.364 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:06.356 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:06.309 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:06.295 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:06.281 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:06.132 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:06.110 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:06.077 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:04.349 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:04.336 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:04.322 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:04.305 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:04.282 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:04.160 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:04.147 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:04.133 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:00.211 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:00.203 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:00.193 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:00.167 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:00.159 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:37:00.149 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:51.384 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:51.376 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:51.368 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:51.262 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:51.238 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:51.182 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:51.157 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:51.132 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:49.394 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:49.380 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:49.366 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:49.268 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:49.253 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:49.107 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:49.079 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:49.054 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:36.351 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:36.339 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:36.325 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:36.315 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:36.301 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:36.287 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:36.197 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:36.169 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:35.060 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:34.856 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:34.841 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:34.827 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:34.814 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:34.748 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:34.735 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:34.720 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:34.670 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:34.643 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:34.485 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:34.464 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:34.442 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:36:32.564 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 485 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:36:32.562 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1335 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:36:32.560 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:36:32.558 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:36:32.555 +0000] "GET /services/server/info HTTP/1.1" 200 1559 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:36:32.553 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:21.988 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:21.811 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:21.802 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:21.794 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:21.787 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:21.738 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:21.725 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:21.711 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:21.623 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:21.609 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:21.409 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:21.396 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:21.370 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:19.355 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:19.342 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:19.319 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:19.286 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:19.274 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:19.258 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:19.245 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:19.210 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:06.386 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:06.366 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:06.350 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:06.340 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:06.324 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:06.323 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:06.293 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 8ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:06.266 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:04.333 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:04.329 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:04.319 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:04.317 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:04.302 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:04.204 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:04.191 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:04.177 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:00.255 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:00.247 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:00.237 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:00.216 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:00.207 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:36:00.198 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:51.375 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:51.367 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:51.359 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:51.294 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:51.280 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:51.096 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:51.075 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:51.060 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:49.356 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:49.343 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:49.328 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:49.311 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:49.297 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:49.028 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:49.012 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:48.990 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:36.343 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:36.331 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:36.317 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:36.280 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:36.254 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:36.250 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:36.226 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:36.224 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:35.057 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:34.846 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:34.832 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:34.819 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:34.805 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:34.709 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:34.685 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:34.655 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:34.655 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:34.636 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:34.420 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:34.386 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:34.362 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:35:32.562 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:35:32.560 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:35:32.558 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:35:32.556 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:35:32.553 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:35:32.551 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:22.287 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:22.124 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:22.115 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:22.107 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:22.099 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:21.964 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:21.938 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:21.933 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:21.914 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:21.887 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:21.760 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:21.747 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:21.732 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:21.562 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:21.523 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:21.477 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:19.384 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:19.369 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:19.354 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:19.304 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:19.290 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:19.148 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:19.121 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:19.103 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:06.350 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:06.337 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:06.316 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:06.304 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:06.290 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:06.124 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:06.100 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:06.073 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:04.402 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:04.389 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:04.375 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:04.264 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:04.250 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:04.115 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:04.101 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:04.072 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:00.212 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:00.195 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:00.165 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:00.157 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:35:00.147 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:51.402 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:51.394 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:51.332 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:51.318 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:51.305 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:51.208 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:51.186 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:51.161 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:49.350 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:49.336 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:49.327 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:49.323 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:49.306 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:49.225 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:49.192 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:49.164 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:36.357 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:36.349 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:36.341 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:36.274 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:36.260 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:36.109 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:36.087 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:36.063 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:35.034 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:34.834 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:34.819 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:34.806 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:34.794 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:34.681 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:34.661 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:34.659 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:34.645 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:34.643 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:34.575 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:34.556 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:34.523 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:34:32.561 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:34:32.558 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:34:32.557 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:34:32.555 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:34:32.552 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:34:32.550 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:21.989 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:21.819 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:21.806 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:21.793 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:21.779 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:21.775 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:21.762 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:21.748 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:21.612 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:21.607 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:21.586 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 7ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:21.585 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:21.563 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:19.384 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:19.371 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:19.358 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:19.258 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:19.244 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:19.129 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:19.107 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:19.078 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:06.413 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:06.404 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:06.310 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:06.297 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:06.284 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:06.195 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:06.181 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:06.166 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:04.382 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:04.369 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:04.357 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:04.239 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:04.230 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:04.223 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:04.197 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:04.174 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:00.262 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:00.254 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:00.245 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:00.214 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:00.206 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:34:00.197 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:51.367 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:51.355 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:51.342 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:51.331 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:51.318 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:51.304 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:51.178 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:51.156 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:49.347 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:49.333 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:49.319 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:49.293 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:49.279 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:49.110 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:49.088 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:49.074 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:36.377 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:36.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:36.270 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:36.253 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:36.239 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:36.153 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:36.139 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:36.125 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:35.343 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:35.125 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:35.112 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:35.099 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:35.086 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:34.970 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:34.969 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:34.944 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:34.936 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:34.930 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:34.919 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:34.902 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:34.872 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:34.488 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:34.446 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:34.419 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:33:32.562 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:33:32.559 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:33:32.558 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:33:32.556 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 869 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:33:32.553 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:33:32.551 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 869 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:22.826 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:22.578 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:22.563 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:22.550 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:22.539 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:22.259 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:22.221 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:22.199 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:22.196 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:22.165 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:22.162 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:22.128 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:22.069 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:19.377 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:19.364 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:19.350 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:19.289 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:19.275 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:19.106 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:19.093 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:19.078 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:06.337 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:06.326 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:06.321 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:06.308 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:06.304 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:06.282 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:06.267 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:06.237 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:04.404 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:04.391 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:04.377 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:04.265 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:04.251 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:04.151 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:04.138 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:04.123 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:00.211 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:00.203 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:00.193 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:00.160 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:00.152 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:33:00.142 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:51.361 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:51.349 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:51.317 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:51.304 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:51.290 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:51.081 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:51.068 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:51.053 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:49.436 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:49.423 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:49.409 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:49.271 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:49.257 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:49.241 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:49.178 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:49.153 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:36.360 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:36.352 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:36.344 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:36.301 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:36.288 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:36.273 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:36.091 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:36.077 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:35.037 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:34.832 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:34.817 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:34.804 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:34.791 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:34.716 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:34.692 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:34.649 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:34.629 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:34.608 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:34.603 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:34.570 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:34.543 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:32:32.560 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 485 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:32:32.558 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1335 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:32:32.557 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:32:32.555 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:32:32.552 +0000] "GET /services/server/info HTTP/1.1" 200 1559 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:32:32.549 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:22.001 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:21.821 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:21.813 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:21.805 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:21.797 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:21.693 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:21.666 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:21.665 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:21.649 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:21.617 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:21.544 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:21.524 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:21.480 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:19.346 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:19.334 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:19.327 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:19.314 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:19.289 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:19.092 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:19.060 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:19.034 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:06.343 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:06.330 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:06.319 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:06.316 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:06.307 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:06.292 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:06.087 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:06.073 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:04.392 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:04.378 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:04.364 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:04.285 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:04.271 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:04.008 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:03.995 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:03.981 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:00.266 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:00.258 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:00.248 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:00.206 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:32:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:51.400 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:51.378 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:51.374 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:51.352 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:51.352 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:51.351 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:51.328 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:51.325 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:49.334 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:49.320 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:49.313 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:49.299 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:49.299 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:49.063 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:49.049 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:49.034 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:36.359 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:36.346 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:36.343 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:36.330 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:36.330 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:36.302 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:36.265 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:36.240 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:35.041 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.857 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:31:34.845 +0000] "POST /services/streams/rtsearch/0 HTTP/1.1" 200 2279 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 11002ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.830 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.805 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.782 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.761 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.740 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.711 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.626 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.623 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.623 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.621 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.618 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.615 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.586 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.560 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.528 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:34.494 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.696 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.508 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.505 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.502 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.497 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.481 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.473 +0000] "GET /servicesNS/admin/search/data/ui/nav/default HTTP/1.0" 200 4573 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.454 +0000] "GET /servicesNS/admin/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 83739 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.439 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.424 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.414 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.242 +0000] "GET /servicesNS/admin/search/data/ui/nav/default HTTP/1.0" 200 4573 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.223 +0000] "GET /servicesNS/admin/search/data/ui/views?count=-1 HTTP/1.0" 200 151969 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.204 +0000] "GET /servicesNS/admin/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 83739 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.189 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.173 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:31:33.164 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:31:32.563 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:31:32.561 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:31:32.559 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:31:32.557 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:31:32.554 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:31:32.552 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:30.354 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:30.352 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:30.349 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:30.346 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:30.343 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:31:29.262 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:31:29.253 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:31:29.077 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:31:29.074 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:31:29.072 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:31:29.066 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:31:29.051 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:31:29.042 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:31:29.026 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:31:29.011 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:31:28.994 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:31:28.984 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:31:28.818 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:31:28.802 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:31:28.786 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:31:28.770 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:31:28.761 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:31:28.595 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 6365 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:31:28.586 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:21.993 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:21.828 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:21.819 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:21.812 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:21.804 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:21.730 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:21.727 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:21.713 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:21.704 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:21.696 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:21.504 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:21.481 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:21.452 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:19.354 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:19.341 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:19.328 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:19.292 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:19.278 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:19.108 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:19.086 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:19.053 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:06.380 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:06.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:06.354 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:06.337 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:06.322 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:06.302 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:06.242 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:06.218 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:04.382 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:04.369 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:04.355 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:04.259 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:04.245 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:04.074 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:04.055 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:04.037 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:31:02.338 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:00.212 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:00.156 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:00.148 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:31:00.138 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:51.983 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:51.973 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:51.358 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:51.348 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:51.312 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:51.299 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:51.284 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:51.142 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:51.112 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:51.078 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:49.326 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:49.322 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:49.314 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:49.308 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:49.286 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:49.082 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:49.058 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:49.028 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:36.350 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:36.339 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:36.326 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:36.308 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:36.295 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:36.281 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:36.088 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:36.073 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:35.056 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:34.864 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:34.849 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:34.836 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:34.822 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:34.723 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:34.702 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:34.701 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:34.686 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:34.671 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:34.488 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:34.452 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:34.428 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:30:32.559 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:30:32.557 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:30:32.555 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:30:32.553 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:30:32.550 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:30:32.548 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:22.575 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:22.415 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:22.406 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:22.398 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:22.391 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:22.295 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:22.274 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:22.250 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:22.246 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:22.214 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:22.196 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:22.119 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:22.093 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:21.754 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:21.720 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:21.676 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:19.386 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:19.372 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:19.359 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:19.265 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:19.251 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:19.056 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:19.043 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:19.029 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:18.901 +0000] "POST /services/streams/rtsearch/0 HTTP/1.1" 403 164 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:17.796 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:30:17.625 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:17.622 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:17.620 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:17.615 +0000] "GET /services/authentication/users/test HTTP/1.0" 200 6634 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:17.601 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:30:17.592 +0000] "GET /servicesNS/test/search/data/ui/nav/default HTTP/1.0" 200 4492 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:17.575 +0000] "GET /servicesNS/test/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 73483 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:30:17.561 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:30:17.548 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:30:17.538 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:30:17.393 +0000] "GET /servicesNS/test/search/data/ui/nav/default HTTP/1.0" 200 4492 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:17.377 +0000] "GET /servicesNS/test/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 73483 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:30:17.362 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:30:17.348 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:30:17.338 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:30:14.922 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:14.912 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:30:14.729 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:14.726 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:14.723 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:14.718 +0000] "GET /services/authentication/users/test HTTP/1.0" 200 6634 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:14.703 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:30:14.695 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:14.678 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:30:14.664 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:30:14.649 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:30:14.639 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:30:14.490 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:14.474 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:30:14.459 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:30:14.444 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:30:14.434 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:30:14.287 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 5985 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:14.278 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:06.356 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:06.349 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:06.341 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:06.297 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:06.284 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:06.269 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:06.190 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:06.168 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:04.368 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:04.360 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:04.295 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:04.281 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:04.267 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:04.169 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:04.155 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:04.141 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:03.427 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:30:03.417 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:00.266 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:00.258 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:00.249 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:00.212 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:30:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:51.376 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:51.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:51.279 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:51.258 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:51.257 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:51.242 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:51.235 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:51.218 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:49.410 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:49.396 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:49.382 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:49.234 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:49.213 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:49.153 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:49.124 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:49.102 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:36.352 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:36.341 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:36.337 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:36.326 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:36.325 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:36.311 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:36.107 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:36.093 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:35.036 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:34.852 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:34.838 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:34.824 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:34.810 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:34.715 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:34.702 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:34.688 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:34.606 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:34.592 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:34.591 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:34.558 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:34.522 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:29:32.557 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:29:32.555 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:29:32.553 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:29:32.551 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:29:32.548 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:29:32.546 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:21.980 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:21.816 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:21.807 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:21.799 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:21.787 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:21.693 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:21.680 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:21.666 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:21.659 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:21.645 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:21.558 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:21.535 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:21.512 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:19.361 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:19.348 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:19.331 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:19.275 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:19.261 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:19.091 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:19.062 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:19.049 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:06.383 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:06.376 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:06.368 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:06.228 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:06.194 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:06.188 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:06.166 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:06.136 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:04.400 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:04.387 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:04.373 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:04.250 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:04.237 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:04.137 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:04.110 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:04.089 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:00.212 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:00.195 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:00.155 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:00.147 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:29:00.137 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:51.400 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:51.392 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:51.384 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:51.331 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:51.313 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:51.075 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:51.062 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:51.047 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:49.449 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:49.441 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:49.433 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:49.236 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:49.214 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:49.192 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:49.131 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:49.116 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:36.380 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:36.372 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:36.364 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:36.259 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:36.245 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:36.141 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:36.114 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:36.092 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:35.486 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:35.324 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:35.315 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:35.306 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:35.281 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:35.089 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:35.059 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:35.047 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:35.032 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:35.016 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:35.000 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:34.863 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:34.838 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:34.514 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:34.501 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:34.486 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:28:32.557 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:28:32.555 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:28:32.553 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:28:32.551 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:28:32.548 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:28:32.546 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:21.970 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:21.808 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:21.799 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:21.792 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:21.784 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:21.666 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:21.652 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:21.602 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:21.581 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:21.553 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:21.522 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:21.493 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:21.460 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:19.364 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:19.351 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:19.337 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:19.310 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:19.295 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:19.144 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:19.118 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:19.095 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:28:16.146 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:28:16.136 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:06.378 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:06.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:06.332 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:06.319 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:06.305 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:06.146 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:06.124 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:06.097 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:04.408 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:04.395 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:04.381 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:04.277 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:04.262 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:04.186 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:04.153 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:04.125 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:00.268 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:00.260 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:00.251 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:28:00.195 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:51.345 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:51.332 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:51.318 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:51.305 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:51.290 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:51.174 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:51.160 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:51.138 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:49.342 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:49.330 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:49.329 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:49.315 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:49.314 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:49.157 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:49.137 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:49.113 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:36.353 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:36.346 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:36.338 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:36.273 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:36.258 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:36.077 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:36.064 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:36.050 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:35.051 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:34.876 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:34.863 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:34.849 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:34.836 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:34.675 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:34.663 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:34.648 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:34.648 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:34.633 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:34.466 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:34.429 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:34.394 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:27:32.560 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:27:32.558 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:27:32.556 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:27:32.554 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:27:32.551 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:27:32.549 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:21.989 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:21.826 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:21.818 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:21.810 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:21.803 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:21.717 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:21.705 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:21.692 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:21.668 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:21.655 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:21.641 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:21.512 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:21.485 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:19.417 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:19.403 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:19.389 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:19.248 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:19.233 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:19.093 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:19.079 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:19.064 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:06.336 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:06.335 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:06.322 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:06.322 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:06.307 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:06.204 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:06.174 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:06.158 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:04.364 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:04.351 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:04.336 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:04.303 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:04.289 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:04.046 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:04.033 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:04.019 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:27:02.045 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:27:02.035 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:00.212 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:00.195 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:00.151 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:00.144 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:27:00.134 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:51.372 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:51.364 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:51.356 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:51.222 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:51.201 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:51.178 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:51.177 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:51.161 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:49.428 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:49.412 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:49.398 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:49.226 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:49.211 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:49.116 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:49.094 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:49.079 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:36.346 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:36.333 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:36.304 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:36.291 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:36.277 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:36.185 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:36.160 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:36.138 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:35.050 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:34.844 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:34.823 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:34.802 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:34.780 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:34.744 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:34.725 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:34.711 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:34.662 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:34.638 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:34.575 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:34.549 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:34.522 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:26:32.555 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:26:32.552 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:26:32.551 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:26:32.549 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:26:32.546 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:26:32.543 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:21.958 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:21.788 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:21.775 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:21.762 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:21.756 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:21.743 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:21.741 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:21.716 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:21.704 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:21.673 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:21.648 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:21.579 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:21.555 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:19.370 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:19.355 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:19.341 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:19.280 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:19.266 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:19.095 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:19.074 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:19.046 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:06.350 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:06.342 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:06.283 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:06.270 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:06.249 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:06.217 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:06.203 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:06.184 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:04.393 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:04.380 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:04.366 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:04.231 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:04.196 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:04.195 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:04.176 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:04.153 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:00.263 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:00.255 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:00.246 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:26:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:51.335 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:51.328 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:51.323 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:51.315 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:51.307 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:51.300 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:51.233 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:51.204 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:49.381 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:49.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:49.354 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:49.253 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:49.239 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:49.114 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:49.091 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:49.064 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:36.333 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:36.325 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:36.322 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:36.308 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:36.308 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:36.293 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:36.248 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:36.234 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:35.030 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:34.819 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:34.806 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:34.792 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:34.780 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:34.702 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:34.671 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:34.670 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:34.650 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:34.620 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:34.559 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:34.531 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:34.508 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:25:32.561 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:25:32.559 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:25:32.557 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:25:32.555 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:25:32.552 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:25:32.550 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:22.271 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:22.109 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:22.100 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:22.092 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:22.084 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:21.967 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:21.966 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:21.941 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:21.940 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:21.923 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:21.836 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:21.812 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:21.788 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:21.562 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:21.530 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:21.492 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:19.403 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:19.389 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:19.375 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:19.257 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:19.243 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:18.995 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:18.982 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:18.967 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:25:13.705 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:25:13.695 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:06.380 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:06.372 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:06.364 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:06.277 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:06.263 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:06.170 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:06.157 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:06.142 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:04.358 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:04.345 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:04.315 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:04.300 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:04.286 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:04.079 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:04.066 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:04.051 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:00.212 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:00.195 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:00.150 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:00.142 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:25:00.133 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:51.377 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:51.370 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:51.362 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:51.291 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:51.276 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:51.132 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:51.103 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:51.089 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:49.357 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:49.344 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:49.329 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:49.277 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:49.262 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:49.066 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:49.043 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:49.022 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:36.365 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:36.358 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:36.350 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:36.237 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:36.223 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:36.134 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:36.108 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:36.080 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:35.045 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:34.861 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:34.842 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:34.829 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:34.816 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:34.776 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:34.748 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:34.723 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:34.560 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:34.523 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:34.508 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:34.478 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:34.454 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:24:32.556 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:24:32.554 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:24:32.552 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:24:32.550 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:24:32.547 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:24:32.545 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:21.955 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:21.779 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:21.766 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:21.761 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:21.752 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:21.749 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:21.738 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:21.734 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:21.672 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:21.658 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:21.436 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:21.412 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:21.389 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:19.376 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:19.363 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:19.349 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:19.266 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:19.251 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:19.121 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:19.108 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:19.093 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:24:13.284 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:24:13.274 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:06.381 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:06.374 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:06.366 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:06.267 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:06.242 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:06.220 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:06.207 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:06.192 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:04.414 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:04.400 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:04.386 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:04.186 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:04.185 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:04.170 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:04.162 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:04.154 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:00.269 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:00.261 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:00.252 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:24:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:51.351 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:51.341 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:51.328 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:51.307 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:51.293 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:51.170 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:51.157 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:51.142 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:49.411 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:49.397 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:49.384 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:49.233 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:49.219 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:49.172 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:49.142 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:49.121 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:36.390 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:36.380 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:36.367 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:36.344 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:36.330 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:36.189 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:36.169 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:36.140 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:35.368 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:35.201 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:35.190 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:35.178 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:35.165 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:35.116 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:35.103 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:35.089 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:34.896 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:34.880 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:34.870 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:34.859 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:34.827 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:34.460 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:34.430 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:34.392 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:23:32.554 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:23:32.552 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:23:32.550 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:23:32.549 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:23:32.545 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:23:32.543 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:21.965 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:21.803 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:21.794 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:21.786 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:21.779 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:21.698 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:21.679 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:21.677 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:21.663 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:21.649 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:21.645 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:21.539 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:21.516 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:19.381 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:19.367 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:19.353 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:19.276 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:19.262 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:19.083 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:19.062 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:19.038 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:23:13.686 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:23:13.677 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:06.356 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:06.348 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:06.298 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:06.283 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:06.268 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:06.170 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:06.144 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:06.122 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:04.442 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:04.433 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:04.420 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:04.202 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:04.189 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:04.181 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:04.154 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:04.132 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:00.202 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:00.193 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:00.149 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:00.141 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:23:00.132 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:51.370 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:51.362 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:51.354 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:51.296 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:51.282 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:51.268 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:51.079 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:51.064 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:49.398 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:49.385 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:49.370 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:49.244 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:49.230 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:49.121 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:49.093 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:49.066 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:36.373 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:36.365 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:36.226 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:36.206 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:36.200 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:36.186 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:36.180 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:36.170 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:35.035 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:34.849 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:34.836 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:34.822 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:34.809 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:34.688 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:34.667 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:34.638 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:34.617 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:34.593 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:34.569 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:34.550 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:34.512 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:22:32.553 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:22:32.550 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:22:32.549 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:22:32.547 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:22:32.544 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:22:32.542 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:21.965 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:21.800 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:21.791 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:21.783 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:21.776 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:21.671 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:21.658 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:21.634 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:21.611 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:21.598 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:21.585 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:21.476 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:21.449 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:19.370 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:19.349 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:19.320 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:19.292 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:19.267 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:19.262 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:19.251 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:19.237 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:22:12.321 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:22:12.310 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:06.348 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:06.336 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:06.303 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:06.290 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:06.276 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:06.176 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:06.163 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:06.148 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:04.314 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:04.289 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:04.282 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:04.281 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:04.269 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:04.260 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:04.256 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:04.240 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:00.271 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:00.264 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:00.254 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:00.212 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:22:00.195 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:51.343 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:51.331 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:51.324 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:51.315 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:51.312 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:51.298 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:51.177 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:51.156 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:49.367 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:49.355 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:49.341 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:49.289 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:49.264 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:49.238 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:49.187 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:49.172 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:36.328 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:36.317 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:36.315 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:36.303 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:36.300 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:36.137 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:36.124 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:36.110 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:35.045 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:34.869 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:34.855 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:34.843 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:34.829 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:34.700 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:34.682 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:34.668 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:34.625 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:34.601 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:34.600 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:34.570 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:34.547 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:21:32.719 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:21:32.716 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:21:32.715 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:21:32.711 +0000] "GET /services/server/health/splunkd/local?output_mode=json HTTP/1.1" 200 1021 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:21:32.709 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:21:32.706 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:21:32.704 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:21.956 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:21.794 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:21.786 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:21.778 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:21.771 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:21.685 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:21.672 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:21.658 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:21.640 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:21.626 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:21.482 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:21.460 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:21.436 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:19.327 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:19.317 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:19.314 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:19.304 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:19.292 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:19.051 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:19.038 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:19.023 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:21:13.179 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:21:13.169 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:06.361 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:06.354 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:06.346 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:06.271 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:06.249 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:06.185 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:06.160 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:06.135 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:04.344 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:04.332 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:04.317 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:04.289 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:04.274 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:04.161 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:04.137 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:04.098 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:00.144 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:00.136 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:21:00.127 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:51.377 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:51.369 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:51.361 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:51.274 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:51.254 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:51.218 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:51.189 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:51.163 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:49.380 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:49.366 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:49.353 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:49.259 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:49.245 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:49.150 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:49.136 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:49.121 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:36.360 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:36.352 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:36.344 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:36.259 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:36.246 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:36.124 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:36.103 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:36.075 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:35.021 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:34.789 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2106 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:34.767 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:34.755 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:34.746 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:34.733 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:34.730 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:34.706 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:34.635 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:34.614 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:34.566 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:34.545 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:34.517 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:20:32.713 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:20:32.711 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:20:32.709 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:20:32.707 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:20:32.704 +0000] "GET /services/server/info HTTP/1.1" 200 1558 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:20:32.702 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:22.415 +0000] "GET /services/server/info HTTP/1.1" 200 6159 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:22.253 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2121 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:22.244 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:22.236 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:22.229 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:22.060 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:22.052 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:22.039 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:22.026 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:22.002 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:21.993 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:21.964 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:21.940 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:21.686 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:21.664 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:21.624 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:19.443 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:19.431 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:19.418 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:19.209 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:19.198 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:19.186 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:19.182 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:19.165 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:15.129 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:15.115 +0000] "GET /servicesNS/test/launcher/saved/searches?_with_new=1&search=is_visible%3D1%20AND%20disabled%3D0&count=500 HTTP/1.0" 200 27440 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:16:20:15.106 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3Dtest%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:15.099 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/test%3A_current HTTP/1.0" 404 156 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:15.086 +0000] "GET /services/configs/conf-web/settings HTTP/1.0" 200 12598 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:20:15.072 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:20:15.064 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:15.047 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:20:15.032 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:20:15.017 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:20:15.008 +0000] "GET /services/server/info HTTP/1.0" 200 6159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:12.300 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:12.290 +0000] "GET /services/server/info HTTP/1.0" 200 6159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:11.934 +0000] "GET /services/server/info HTTP/1.0" 200 6149 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:11.932 +0000] "GET /services/server/info HTTP/1.0" 200 6149 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:11.929 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:11.918 +0000] "GET /services/apps/local?search=visible%3Dtrue&count=-1 HTTP/1.0" 200 21115 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:20:11.905 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:11.867 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:20:11.857 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:11.850 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:11.834 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:20:11.820 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:20:11.795 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:20:11.768 +0000] "GET /servicesNS/-/launcher/data/ui/views?sort_mode=natural&count=25&offset=25 HTTP/1.0" 200 37699 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:20:11.760 +0000] "GET /services/authentication/users?search=roles%3D%2A&count=250 HTTP/1.0" 200 5505 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:11.744 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:16:20:11.733 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:11.725 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4346 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:11.692 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:20:11.682 +0000] "GET /services/server/info HTTP/1.0" 200 6159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:06.359 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:06.352 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:06.343 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:06.301 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:06.287 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:06.121 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:06.097 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:06.064 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:04.442 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:04.430 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:04.418 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:04.226 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:04.213 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:04.127 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:04.113 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:04.091 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:02.905 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:02.893 +0000] "GET /services/server/info HTTP/1.0" 200 6159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:02.571 +0000] "GET /services/server/info HTTP/1.0" 200 6149 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:02.568 +0000] "GET /services/server/info HTTP/1.0" 200 6149 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:02.565 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:02.549 +0000] "GET /services/apps/local?search=visible%3Dtrue&count=-1 HTTP/1.0" 200 21115 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:20:02.537 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:02.521 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:02.514 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:02.497 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:20:02.483 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:20:02.458 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:20:02.427 +0000] "GET /servicesNS/-/launcher/data/ui/views?sort_mode=natural&count=25 HTTP/1.0" 200 59671 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:16:20:02.418 +0000] "GET /services/authentication/users?search=roles%3D%2A&count=250 HTTP/1.0" 200 5505 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:02.404 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:20:02.393 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:02.385 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4346 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:02.372 +0000] "GET /services/server/info HTTP/1.0" 200 6159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:00.726 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:00.716 +0000] "GET /services/server/info HTTP/1.0" 200 6159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:00.346 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:00.338 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:00.328 +0000] "GET /services/server/info HTTP/1.0" 200 6149 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:00.327 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:00.323 +0000] "GET /services/server/info HTTP/1.0" 200 6149 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:00.319 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:00.311 +0000] "GET /servicesNS/test/launcher/messages HTTP/1.0" 200 1764 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:00.291 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:00.233 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 17ms 127.0.0.1 - test [10/Jan/2023:16:20:00.215 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:20:00.203 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:20:00.195 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:20:00.174 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:16:20:00.145 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:16:20:00.103 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:20:00.027 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 18ms 127.0.0.1 - test [10/Jan/2023:16:20:00.015 +0000] "GET /services/server/info HTTP/1.0" 200 6159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:19:53.453 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:19:53.444 +0000] "GET /services/server/info HTTP/1.0" 200 6159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:19:53.271 +0000] "GET /services/server/info HTTP/1.0" 200 6149 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:19:53.268 +0000] "GET /services/server/info HTTP/1.0" 200 6149 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:19:53.265 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:19:53.260 +0000] "GET /services/authentication/users/test HTTP/1.0" 200 6634 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:19:53.246 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:19:53.238 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:19:53.221 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:19:53.207 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:19:53.194 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:19:53.184 +0000] "GET /services/server/info HTTP/1.0" 200 6159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:19:53.032 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:19:53.016 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:19:53.001 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:19:52.986 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:19:52.977 +0000] "GET /services/server/info HTTP/1.0" 200 6159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:19:52.824 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 5985 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:19:52.815 +0000] "GET /services/authentication/users/test HTTP/1.0" 200 6634 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - - [10/Jan/2023:16:19:52.806 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:51.409 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:51.401 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:51.393 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:51.269 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:51.256 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:51.247 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:51.226 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:51.195 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:49.343 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:49.331 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:49.284 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:49.271 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:49.256 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:49.149 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:49.136 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:49.121 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:36.391 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:36.381 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:36.373 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:36.246 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:36.232 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:36.176 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:36.153 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:36.129 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:35.032 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:34.848 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2106 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:34.833 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:34.820 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:34.804 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:34.696 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:34.676 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:34.673 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:34.659 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:34.655 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:34.527 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:34.498 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:34.477 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:19:32.723 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:19:32.721 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:19:32.719 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:19:32.716 +0000] "GET /services/server/health/splunkd/local?output_mode=json HTTP/1.1" 200 1140 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:19:32.714 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:19:32.711 +0000] "GET /services/server/info HTTP/1.1" 200 1558 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:19:32.709 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - - [10/Jan/2023:16:19:28.335 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:19:28.326 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:21.974 +0000] "GET /services/server/info HTTP/1.1" 200 6159 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:21.798 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2121 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:21.789 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:21.782 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:21.774 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:21.727 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:21.714 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:21.700 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:21.668 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:21.646 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:21.613 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:21.586 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:21.564 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:19.335 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:19.322 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:19.296 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:19.284 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:19.269 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:19.075 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:19.056 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:19.030 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:06.354 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:06.346 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:06.338 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:06.291 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:06.277 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:06.017 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:06.003 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:05.989 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:04.391 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:04.378 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:04.363 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:04.264 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:04.248 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:04.179 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:04.156 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:04.126 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:00.180 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:00.172 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:19:00.162 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:51.375 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:51.367 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:51.353 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:51.327 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:51.312 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:51.185 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:51.164 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:51.141 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:49.331 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:49.318 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:49.302 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:49.301 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:49.286 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:49.154 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:49.136 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:49.105 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:36.346 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:36.338 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:36.324 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:36.299 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:36.285 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:36.178 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:36.149 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:36.128 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:36.015 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:35.767 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2106 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:35.753 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:35.740 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:35.723 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:35.464 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:35.430 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:35.388 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:35.372 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:35.340 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:35.306 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:35.239 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:35.220 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:18:34.939 +0000] "GET /services/search/jobs/remote_sh1_SummaryDirector_1673367514.23/search_telemetry.json HTTP/1.1" 200 707 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:18:34.935 +0000] "GET /services/search/jobs/remote_sh1_SummaryDirector_1673367514.23/search.log HTTP/1.1" 200 1632 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:18:34.878 +0000] "POST /services/streams/search?sh_sid=SummaryDirector_1673367514.23 HTTP/1.1" 200 1474 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 19ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:34.868 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:18:34.851 +0000] "GET /services/search/jobs/remote_sh1_SummaryDirector_1673367514.24/search_telemetry.json HTTP/1.1" 200 704 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:18:34.846 +0000] "GET /services/search/jobs/remote_sh1_SummaryDirector_1673367514.24/search.log HTTP/1.1" 200 2864 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:34.792 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:18:34.772 +0000] "POST /services/streams/search?sh_sid=SummaryDirector_1673367514.24 HTTP/1.1" 200 1465 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 56ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:34.737 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:18:32.719 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:18:32.717 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:18:32.715 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:18:32.712 +0000] "GET /services/server/health/splunkd/local?output_mode=json HTTP/1.1" 200 1109 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:18:32.710 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:18:32.707 +0000] "GET /services/server/info HTTP/1.1" 200 1558 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:18:32.705 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:21.976 +0000] "GET /services/server/info HTTP/1.1" 200 6159 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:21.811 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2121 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:21.800 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:21.789 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:21.776 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:21.763 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:21.750 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:21.736 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:21.642 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:21.614 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:21.613 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:21.592 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:21.566 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:19.446 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:19.436 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:19.416 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:19.350 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:19.328 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:19.288 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:19.070 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:19.052 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:06.345 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:06.337 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:06.323 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:06.296 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:06.282 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:06.188 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:06.165 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:06.135 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:04.342 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:04.331 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:04.283 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:04.270 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:04.256 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:04.203 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:04.190 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:04.176 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:00.223 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:00.216 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:00.215 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:00.207 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:18:00.198 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:51.375 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:51.367 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:51.359 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:51.257 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:51.232 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:51.214 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:51.206 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:51.199 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:49.369 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:49.355 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:49.343 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:49.326 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:49.301 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:49.275 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:49.183 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:49.152 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:36.346 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:36.332 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:36.303 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:36.290 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:36.276 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:36.163 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:36.147 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:36.121 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:35.071 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:34.907 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2106 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:34.899 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:34.891 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:34.883 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:34.578 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:34.565 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:34.450 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:34.431 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:34.403 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:34.340 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:34.315 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:34.274 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:17:32.718 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:17:32.715 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:17:32.714 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:17:32.712 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:17:32.709 +0000] "GET /services/server/info HTTP/1.1" 200 1560 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:17:32.707 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:26.912 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:26.910 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:26.908 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:26.905 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:26.902 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:26.201 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:26.191 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:26.014 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:26.011 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:26.009 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:26.003 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:25.986 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:25.978 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:25.961 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:25.946 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:25.930 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:17:25.920 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:25.772 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:25.755 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:25.739 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:17:25.717 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:17:25.707 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:25.560 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 6365 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:25.550 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:21.958 +0000] "GET /services/server/info HTTP/1.1" 200 6161 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:21.786 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2123 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:21.772 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:21.760 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:21.751 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:21.745 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:21.739 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:21.726 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:21.644 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:21.622 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:21.508 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:21.471 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 812 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:21.448 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:19.434 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:19.426 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:19.414 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:19.363 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:19.342 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:19.318 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:19.059 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:19.044 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:18.294 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:18.277 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:18.261 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:18.245 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:18.235 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.991 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.981 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.653 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.650 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.647 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.634 +0000] "GET /services/apps/local?search=visible%3Dtrue&count=-1 HTTP/1.0" 200 32928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.622 +0000] "GET /servicesNS/admin/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7908 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.602 +0000] "GET /servicesNS/admin/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1952 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.595 +0000] "GET /servicesNS/admin/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.578 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.562 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.536 +0000] "GET /servicesNS/admin/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52247 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.496 +0000] "GET /servicesNS/-/launcher/data/ui/views?sort_mode=natural&count=25&offset=25 HTTP/1.0" 200 38208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.486 +0000] "GET /services/authentication/users?search=roles%3D%2A&count=250 HTTP/1.0" 200 14859 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.470 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.457 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.448 +0000] "GET /servicesNS/admin/user-prefs/data/user-prefs/general HTTP/1.0" 200 4635 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:15.433 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:13.451 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:13.442 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:13.121 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:13.118 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:13.115 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:13.106 +0000] "GET /servicesNS/admin/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7908 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:13.087 +0000] "GET /servicesNS/admin/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1952 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:13.080 +0000] "GET /servicesNS/admin/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:13.063 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:13.047 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:17:13.023 +0000] "GET /servicesNS/admin/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52247 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - admin [10/Jan/2023:16:17:12.979 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:12.965 +0000] "GET /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 4404 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:12.957 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:12.948 +0000] "GET /servicesNS/admin/user-prefs/data/user-prefs/general HTTP/1.0" 200 4635 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:12.935 +0000] "GET /servicesNS/admin/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52247 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - admin [10/Jan/2023:16:17:12.918 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:11.352 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:11.342 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.996 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.993 +0000] "GET /services/server/info HTTP/1.0" 200 6151 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.990 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.978 +0000] "GET /services/apps/local?search=visible%3Dtrue&count=-1 HTTP/1.0" 200 32928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.965 +0000] "GET /servicesNS/admin/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7908 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.909 +0000] "GET /servicesNS/admin/search/data/ui/manager?count=-1 HTTP/1.0" 200 527468 "-" "Python-httplib2/0.13.1 (gzip)" - - - 16ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.893 +0000] "GET /servicesNS/admin/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1952 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.878 +0000] "GET /servicesNS/admin/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.861 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.845 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.820 +0000] "GET /servicesNS/admin/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52247 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.776 +0000] "GET /servicesNS/-/launcher/data/ui/views?sort_mode=natural&count=25&offset=25 HTTP/1.0" 200 38208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.766 +0000] "GET /services/authentication/users?search=roles%3D%2A&count=250 HTTP/1.0" 200 14859 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.750 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.735 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.726 +0000] "GET /servicesNS/admin/user-prefs/data/user-prefs/general HTTP/1.0" 200 4635 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.653 +0000] "GET /servicesNS/admin/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 527704 "-" "Python-httplib2/0.13.1 (gzip)" - - - 15ms 127.0.0.1 - admin [10/Jan/2023:16:17:10.640 +0000] "GET /services/server/info HTTP/1.0" 200 6161 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.940 +0000] "POST /servicesNS/nobody/splunk_archiver/saved/searches/Bucket%20Copy%20Trigger/notify?trigger.condition_state=1 HTTP/1.1" 200 1969 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 6ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.909 +0000] "POST /services/search/jobs/1673367420.22/control HTTP/1.0" 200 138 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.901 +0000] "POST /services/search/jobs/1673367420.22/control HTTP/1.0" 200 138 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.890 +0000] "GET /services/search/jobs/1673367420.22 HTTP/1.0" 200 11229 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:17:08.846 +0000] "GET /services/search/jobs/remote_sh1_1673367420.22/search_telemetry.json HTTP/1.1" 200 746 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:17:08.843 +0000] "GET /services/search/jobs/remote_sh1_1673367420.22/search.log HTTP/1.1" 200 2639 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.816 +0000] "GET /services/server/info/server-info?count=0 HTTP/1.0" 200 6522 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.797 +0000] "GET /services/server/info/server-info?count=0 HTTP/1.0" 200 6481 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.795 +0000] "GET /services/data/indexes?search=disabled%3D0&count=0 HTTP/1.0" 200 71722 "-" "Python-httplib2/0.13.1 (gzip)" - - - 8ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.779 +0000] "GET /services/search/jobs/1673367420.22 HTTP/1.0" 200 7791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.773 +0000] "GET /services/data/indexes?search=disabled%3D0&count=0 HTTP/1.0" 200 71469 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.763 +0000] "GET /services/search/jobs/1673367420.22 HTTP/1.0" 200 7791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.647 +0000] "GET /services/search/jobs/1673367420.22 HTTP/1.0" 200 7791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.632 +0000] "GET /services/search/jobs/1673367420.22 HTTP/1.0" 200 7791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.616 +0000] "GET /services/search/jobs/1673367420.22 HTTP/1.0" 200 7791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.600 +0000] "GET /services/search/jobs/1673367420.22 HTTP/1.0" 200 7791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.581 +0000] "GET /services/search/jobs/1673367420.22 HTTP/1.0" 200 7791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:17:08.549 +0000] "POST /services/streams/search?sh_sid=1673367420.22 HTTP/1.1" 200 1510 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 290ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.517 +0000] "GET /services/search/jobs/1673367420.22 HTTP/1.0" 200 5585 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:08.451 +0000] "GET /services/search/jobs/1673367420.22 HTTP/1.0" 200 4443 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:17:08.439 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 1046 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:17:08.395 +0000] "POST /services/receivers/bundle-delta/sh1?indexBundle=0 HTTP/1.1" 200 548 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 43ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:17:08.393 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 992 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:17:06.990 +0000] "POST /services/receivers/bundle-delta/sh1 HTTP/1.1" 200 547 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 201ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:06.641 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:06.487 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:06.459 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:06.425 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:06.339 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:06.334 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:06.312 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:06.310 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:06.284 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:17:06.131 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 127.0.0.1 - admin [10/Jan/2023:16:17:05.205 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:05.195 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.874 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.871 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.868 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.852 +0000] "GET /services/apps/local?search=visible%3Dtrue&count=-1 HTTP/1.0" 200 32928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.840 +0000] "GET /servicesNS/admin/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7908 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.820 +0000] "GET /servicesNS/admin/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1952 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.813 +0000] "GET /servicesNS/admin/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.797 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.781 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.757 +0000] "GET /servicesNS/admin/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52247 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.712 +0000] "GET /servicesNS/-/launcher/data/ui/views?sort_mode=natural&count=25 HTTP/1.0" 200 61815 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.703 +0000] "GET /services/authentication/users?search=roles%3D%2A&count=250 HTTP/1.0" 200 14859 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.687 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:04.674 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.670 +0000] "POST /servicesNS/admin/user-prefs/data/user-prefs/general HTTP/1.0" 200 6384 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.662 +0000] "GET /servicesNS/admin/user-prefs/data/user-prefs/general HTTP/1.0" 200 4532 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:04.660 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.654 +0000] "GET /servicesNS/admin/user-prefs/data/user-prefs/general HTTP/1.0" 200 4532 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.646 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.637 +0000] "GET /servicesNS/admin/user-prefs/data/user-prefs/general HTTP/1.0" 200 4532 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:04.622 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:04.597 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:04.584 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:04.567 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:04.487 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:04.466 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:04.441 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:02.623 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:02.614 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:02.220 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:02.217 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:02.214 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:02.210 +0000] "GET /servicesNS/admin/launcher/messages HTTP/1.0" 200 1766 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:02.198 +0000] "GET /servicesNS/admin/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7908 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:02.141 +0000] "GET /servicesNS/admin/search/data/ui/manager?count=-1 HTTP/1.0" 200 527468 "-" "Python-httplib2/0.13.1 (gzip)" - - - 17ms 127.0.0.1 - admin [10/Jan/2023:16:17:02.130 +0000] "GET /servicesNS/admin/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1952 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:17:02.123 +0000] "GET /servicesNS/admin/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:17:02.106 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:17:02.088 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:17:02.063 +0000] "GET /servicesNS/admin/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52247 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - admin [10/Jan/2023:16:17:01.987 +0000] "GET /servicesNS/admin/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 527704 "-" "Python-httplib2/0.13.1 (gzip)" - - - 16ms 127.0.0.1 - admin [10/Jan/2023:16:17:01.977 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:01.151 +0000] "POST /servicesNS/nobody/splunk_archiver/saved/searches/Bucket%20Copy%20Trigger/notify?trigger.condition_state=1 HTTP/1.1" 200 1969 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 6ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:01.120 +0000] "POST /services/search/jobs/1673367420.6/control HTTP/1.0" 200 138 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:01.112 +0000] "POST /services/search/jobs/1673367420.6/control HTTP/1.0" 200 138 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:01.102 +0000] "GET /services/search/jobs/1673367420.6 HTTP/1.0" 200 10142 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:01.004 +0000] "GET /services/server/info/server-info?count=0 HTTP/1.0" 200 6481 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.991 +0000] "GET /services/search/jobs/1673367420.6 HTTP/1.0" 200 7687 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.976 +0000] "GET /services/data/indexes?search=disabled%3D0&count=0 HTTP/1.0" 200 71722 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.975 +0000] "GET /services/search/jobs/1673367420.6 HTTP/1.0" 200 7687 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.951 +0000] "POST /servicesNS/splunk-system-user/splunk_archiver/search/jobs HTTP/1.0" 201 89 "-" "Python-httplib2/0.13.1 (gzip)" - - - 7491ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.857 +0000] "GET /services/search/jobs/1673367420.6 HTTP/1.0" 200 7687 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.842 +0000] "GET /services/search/jobs/1673367420.6 HTTP/1.0" 200 7687 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.824 +0000] "GET /services/search/jobs/1673367420.6 HTTP/1.0" 200 7687 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.808 +0000] "GET /services/search/jobs/1673367420.6 HTTP/1.0" 200 7687 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.800 +0000] "GET /services/data/vix-indexes?search=disabled%3D0%20AND%20vix.output.buckets.from.indexes%3D%2A&count=0 HTTP/1.0" 200 1883 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.791 +0000] "GET /services/search/jobs/1673367420.6 HTTP/1.0" 200 7687 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.777 +0000] "GET /services/data/vix-providers?count=0 HTTP/1.0" 200 1893 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.717 +0000] "GET /services/search/jobs/1673367420.6 HTTP/1.0" 200 5512 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.653 +0000] "GET /services/search/jobs/1673367420.6 HTTP/1.0" 200 4371 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.636 +0000] "POST /servicesNS/splunk-system-user/splunk_archiver/search/jobs HTTP/1.0" 201 88 "-" "Python-httplib2/0.13.1 (gzip)" - - - 7ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.507 +0000] "GET /services/data/vix-indexes?search=disabled%3D0%20AND%20vix.output.buckets.from.indexes%3D%2A&count=0 HTTP/1.0" 200 1883 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.493 +0000] "GET /services/data/vix-providers?count=0 HTTP/1.0" 200 1893 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.219 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 7ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.212 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.207 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:17:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:51.430 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:51.415 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:51.366 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:51.338 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:51.315 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:51.297 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:51.122 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:51.108 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:51.094 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:49.443 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:49.434 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:49.420 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:49.259 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:49.241 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:49.216 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:49.108 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:49.084 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:47.331 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:47.329 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:47.327 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:47.324 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:47.320 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.460 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.451 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.292 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.289 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.286 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.281 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.265 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.256 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.239 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.224 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.208 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.199 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.046 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.029 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:16:46.013 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:16:45.996 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:16:45.987 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:16:45.839 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 6262 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:16:45.830 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:16:45.820 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:16:37.253 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:16:37.243 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:36.589 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:36.386 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:36.381 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:36.367 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:36.349 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:36.342 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:36.121 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:36.108 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:36.093 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:35.023 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:34.808 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:34.791 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:34.778 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:34.764 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:34.695 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:34.690 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:34.678 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:34.666 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:34.646 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:34.490 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:34.469 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:34.443 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:16:32.719 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 485 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:16:32.717 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1335 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:16:32.716 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 942 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:16:32.714 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:16:32.711 +0000] "GET /services/server/info HTTP/1.1" 200 1553 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:16:32.709 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:22.328 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:22.027 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:22.004 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:21.976 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:21.956 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:21.813 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:21.774 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:21.770 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:21.688 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:21.667 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:21.645 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:21.574 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:21.561 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:21.546 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:19.404 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:19.378 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:19.350 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:19.335 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:19.294 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:19.279 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:19.177 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:19.148 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:06.662 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:06.496 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:06.483 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:06.467 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:06.466 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:06.441 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:06.108 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:06.095 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:06.080 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:04.331 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:04.318 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:04.307 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:04.285 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:04.270 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:04.205 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:04.192 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:04.178 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:00.221 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:00.214 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:00.213 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:00.206 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:00.203 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:16:00.197 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:51.414 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:51.404 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:51.391 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:51.377 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:51.212 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:51.206 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:51.197 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:51.175 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:51.152 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:49.367 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:49.366 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:49.348 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:49.342 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:49.320 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:49.313 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:49.126 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:49.098 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:36.694 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:36.553 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:36.533 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:36.509 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:36.277 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:36.256 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:36.107 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:36.089 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:36.067 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:35.039 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:34.859 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:34.845 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:34.832 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:34.819 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:34.673 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:34.660 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:34.605 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:34.582 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:34.556 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:34.458 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:34.426 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:34.402 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:15:32.729 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:15:32.726 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:15:32.725 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:15:32.723 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:15:32.720 +0000] "GET /services/server/info HTTP/1.1" 200 1555 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:15:32.717 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:22.847 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:22.505 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:22.479 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:22.445 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:22.415 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:22.284 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:22.118 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:22.074 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:21.978 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:21.937 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:21.904 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:21.857 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:21.821 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:21.789 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:21.622 +0000] "GET /servicesNS/nobody/assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 58 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:21.585 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:21.550 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:21.508 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:19.428 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:19.406 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:19.386 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:19.379 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:19.371 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:19.357 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:19.056 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:19.041 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:06.442 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:06.412 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:06.397 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:06.313 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:06.300 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:06.286 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:06.176 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:06.153 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:06.132 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:04.374 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:04.366 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:04.230 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:04.217 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:04.202 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:04.143 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:04.129 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:04.115 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:00.202 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:00.198 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:00.193 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:00.190 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:15:00.180 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:51.420 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:51.397 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:51.391 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:51.386 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:51.377 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:51.353 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:51.175 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:51.160 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:51.136 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:49.432 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:49.422 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:49.409 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:49.363 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:49.337 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:49.312 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:49.084 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:49.061 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:36.597 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:36.414 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:36.386 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:36.365 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:36.305 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:36.280 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:36.248 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:36.144 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:36.120 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:35.006 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:34.772 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:34.757 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:34.744 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:34.731 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:34.694 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:34.692 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:34.670 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:34.664 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:34.642 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:34.608 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:34.584 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:34.547 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:14:32.726 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:14:32.724 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:14:32.723 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:14:32.721 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:14:32.718 +0000] "GET /services/server/info HTTP/1.1" 200 1554 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:14:32.715 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:22.268 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:21.930 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:21.908 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:21.880 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:21.863 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:21.785 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:21.761 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:21.740 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:21.732 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:21.681 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:21.656 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:21.518 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:21.492 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:21.471 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:19.420 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:19.408 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:19.394 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:19.222 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:19.209 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:19.195 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:19.118 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:19.097 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:14:18.335 +0000] "POST /services/streams/rtsearch/0 HTTP/1.1" 403 164 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:14:17.169 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:14:17.159 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:14:16.990 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:14:16.987 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:14:16.984 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:14:16.972 +0000] "GET /services/authentication/users/test HTTP/1.0" 200 6634 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:14:16.957 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:14:16.949 +0000] "GET /servicesNS/test/search/data/ui/nav/default HTTP/1.0" 200 4492 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:14:16.923 +0000] "GET /servicesNS/test/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 73483 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:16:14:16.886 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:14:16.870 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:14:16.861 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:14:16.702 +0000] "GET /servicesNS/test/search/data/ui/nav/default HTTP/1.0" 200 4492 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:14:16.685 +0000] "GET /servicesNS/test/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 73483 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:14:16.671 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:14:16.657 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:14:16.648 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:14:16.634 +0000] "GET /servicesNS/test/search/data/ui/nav/default HTTP/1.0" 200 4492 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:14:16.614 +0000] "GET /servicesNS/test/search/data/ui/views?count=-1 HTTP/1.0" 200 124837 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:14:16.597 +0000] "GET /servicesNS/test/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 73483 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:14:16.583 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:14:16.569 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:14:16.558 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:06.552 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:06.336 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:06.328 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:06.321 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:06.307 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:06.306 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:06.277 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:06.206 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:06.175 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:04.347 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:04.338 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:04.231 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:04.205 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:04.186 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:04.174 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:04.154 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:04.128 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:00.225 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:00.217 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:00.208 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:00.207 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:00.200 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:14:00.191 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:51.443 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:51.430 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:51.416 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:51.340 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:51.328 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:51.327 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:51.187 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:51.150 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:51.126 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:49.312 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:49.301 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:49.287 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:49.278 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:49.255 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:49.235 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:49.231 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:49.212 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:36.640 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:36.526 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:36.514 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:36.484 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:36.254 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:36.240 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:36.226 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:36.149 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:36.128 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:35.359 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:35.191 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:35.183 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:35.175 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:35.167 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:34.912 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:34.899 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:34.887 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:34.866 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:34.844 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:34.748 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:34.735 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:34.721 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:34.475 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:34.443 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:34.412 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:13:32.732 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:13:32.730 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:13:32.728 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:13:32.726 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:13:32.723 +0000] "GET /services/server/info HTTP/1.1" 200 1554 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:13:32.721 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:22.299 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:22.005 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:21.975 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:21.950 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:21.928 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:21.801 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:21.773 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:21.767 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:21.739 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:21.633 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:21.601 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:21.561 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:21.526 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:21.496 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:19.447 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:19.440 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:19.430 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:19.264 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:19.244 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:19.228 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:19.149 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:19.123 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:06.708 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:06.541 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:06.516 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:06.487 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:06.289 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:06.266 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:06.199 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:06.178 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:06.153 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:04.333 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:04.320 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:04.307 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:04.294 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:04.281 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:04.165 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:04.136 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:04.120 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:00.195 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:00.191 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:00.187 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:13:00.178 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:51.517 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:51.504 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:51.490 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:51.336 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:51.323 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:51.265 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:51.129 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:51.104 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:51.081 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:50.637 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:50.606 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:12:50.400 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:50.398 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:50.395 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:50.390 +0000] "GET /services/authentication/users/test HTTP/1.0" 200 6634 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:50.376 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:12:50.368 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:50.351 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:12:50.338 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:12:50.324 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:12:50.315 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:12:50.161 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:50.145 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:12:50.131 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:12:50.116 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:12:50.106 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:12:49.953 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 5985 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:49.943 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:49.393 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:49.380 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:49.366 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:49.232 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:49.213 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:49.201 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:49.171 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:49.150 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:36.663 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:36.541 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:36.524 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:36.510 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:36.262 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:36.232 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:36.153 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:36.126 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:36.100 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:35.162 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:35.153 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:35.050 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:34.879 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:34.866 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:34.855 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:34.842 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:34.784 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:12:34.782 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:12:34.779 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:34.770 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:34.762 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:34.729 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:12:34.719 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:12:34.712 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:34.709 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:34.695 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:34.682 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:34.682 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:34.658 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:34.658 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:34.641 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:34.630 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:34.627 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:34.618 +0000] "GET /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 4404 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:12:34.610 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:34.602 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4346 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:34.590 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:12:34.554 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 12ms 127.0.0.1 - test [10/Jan/2023:16:12:34.545 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:34.470 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:34.441 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:34.425 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:12:32.729 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:12:32.727 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:12:32.725 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:12:32.724 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:12:32.721 +0000] "GET /services/server/info HTTP/1.1" 200 1554 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:12:32.718 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:12:23.862 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:23.846 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:22.262 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:21.983 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:21.956 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:21.933 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:21.912 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:21.886 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:21.756 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:21.736 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:21.712 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:21.607 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:21.580 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:21.572 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:21.542 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:21.516 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:19.371 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:19.352 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:19.336 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:19.323 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:19.302 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:19.274 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:19.154 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:19.132 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:06.519 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:06.506 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:06.492 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:06.420 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:06.294 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:06.280 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:06.237 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:06.216 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:06.184 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:12:06.116 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:12:06.064 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:12:06.013 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:16:12:05.972 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 6ms 127.0.0.1 - test [10/Jan/2023:16:12:05.946 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:04.349 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:04.341 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:04.273 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:04.260 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:04.246 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:04.108 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:04.086 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:04.061 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:00.223 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:00.216 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:00.206 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:00.202 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:12:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:11:52.804 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:11:52.791 +0000] "GET /servicesNS/test/launcher/saved/searches?_with_new=1&search=is_visible%3D1%20AND%20disabled%3D0&count=500 HTTP/1.0" 200 27440 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:11:52.782 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3Dtest%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:11:52.774 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/test%3A_current HTTP/1.0" 404 156 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:11:52.762 +0000] "GET /services/configs/conf-web/settings HTTP/1.0" 200 12598 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:11:52.748 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:11:52.740 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:11:52.723 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:11:52.708 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:11:52.694 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:11:52.685 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:51.638 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:51.475 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:51.454 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:51.424 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:51.324 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:51.302 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:51.196 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:51.183 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:51.167 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:49.388 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:49.363 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:49.342 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:49.342 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:49.326 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:49.312 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:49.097 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:49.074 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:11:45.253 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:11:45.236 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:11:45.222 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:11:45.207 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:11:45.197 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:36.413 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:36.410 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:36.389 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:36.355 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:36.330 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:36.304 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:36.255 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:36.234 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:36.206 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:35.014 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:34.780 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:34.757 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:34.744 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:34.731 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:34.708 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:34.703 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:34.692 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:34.677 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:34.662 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:34.528 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:34.500 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:34.465 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:11:32.733 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:11:32.731 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:11:32.729 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:11:32.728 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:11:32.724 +0000] "GET /services/server/info HTTP/1.1" 200 1554 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:11:32.722 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:11:24.181 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:11:24.171 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:22.265 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:22.021 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:22.006 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:21.983 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:21.962 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:21.908 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:21.691 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:21.666 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:21.659 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:21.645 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:21.634 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:21.614 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:21.504 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:21.473 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:19.384 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:19.378 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:19.365 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:19.359 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:19.349 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:19.340 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:19.185 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:19.170 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:06.532 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:06.421 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:06.418 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:06.403 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:06.397 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:06.386 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:06.187 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:06.173 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:06.158 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:04.449 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:04.441 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:04.433 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:04.333 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:04.300 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:04.273 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:04.161 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:04.147 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:00.212 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:00.204 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:00.194 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:00.186 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:11:00.177 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:51.441 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:51.393 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:51.379 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:51.365 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:51.259 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:51.239 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:51.238 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:51.218 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:51.217 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:49.383 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:49.370 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:49.358 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:49.248 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:49.235 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:49.067 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:49.048 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:49.022 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:36.494 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:36.442 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:36.416 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:36.341 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:36.327 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:36.313 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:36.077 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:36.060 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:36.045 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:35.037 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:34.844 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:34.830 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:34.817 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:34.803 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:34.742 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:34.717 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:34.696 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:34.611 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:34.597 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:34.453 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:34.428 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:34.401 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:10:32.728 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:10:32.726 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:10:32.724 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:10:32.722 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:10:32.719 +0000] "GET /services/server/info HTTP/1.1" 200 1554 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:10:32.717 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:10:23.968 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:10:23.958 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:10:23.593 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:10:23.591 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:10:23.588 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:10:23.577 +0000] "GET /services/apps/local?search=visible%3Dtrue&count=-1 HTTP/1.0" 200 21115 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:10:23.559 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:10:23.530 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:10:23.495 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:10:23.485 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:10:23.479 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:10:23.461 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:10:23.448 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:10:23.423 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:10:23.396 +0000] "GET /servicesNS/-/launcher/data/ui/views?sort_mode=natural&count=25&offset=25 HTTP/1.0" 200 37699 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:10:23.388 +0000] "GET /services/authentication/users?search=roles%3D%2A&count=250 HTTP/1.0" 200 5505 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:10:23.374 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:10:23.363 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:10:23.355 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4346 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:10:23.321 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:10:23.312 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:10:23.069 +0000] "POST /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 3919 "-" "Python-httplib2/0.13.1 (gzip)" - - - 8ms 127.0.0.1 - test [10/Jan/2023:16:10:23.048 +0000] "GET /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 4404 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:10:23.016 +0000] "GET /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 4404 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:10:22.993 +0000] "GET /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 4404 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:10:22.920 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 24ms 127.0.0.1 - test [10/Jan/2023:16:10:22.879 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:22.877 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:22.591 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:22.576 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:22.563 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:22.548 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:22.393 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:22.122 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:22.118 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:22.098 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:22.082 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:22.069 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:22.052 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:22.035 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:22.012 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:21.705 +0000] "GET /servicesNS/nobody/assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 58 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:21.680 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:21.654 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:21.632 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:19.365 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:19.352 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:19.338 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:19.258 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:19.243 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:19.153 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:19.140 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:19.125 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:10:16.511 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:10:16.501 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:06.505 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:06.491 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:06.446 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:06.274 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:06.258 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:06.237 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:06.071 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:06.057 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:06.039 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:04.403 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:04.389 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:04.375 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:04.239 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:04.218 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:04.187 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:04.168 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:04.137 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:00.202 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:10:00.193 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:51.485 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:51.480 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:51.468 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:51.454 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:51.359 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:51.346 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:51.333 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:51.079 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:51.049 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:49.392 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:49.379 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:49.365 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:49.241 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:49.223 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:49.154 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:49.133 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:49.119 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:36.518 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:36.464 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:36.432 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:36.349 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:36.323 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:36.300 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:36.210 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:36.182 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:36.168 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:35.038 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:34.845 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:34.829 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:34.816 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:34.789 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:34.768 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:34.755 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:34.730 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:34.589 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:34.560 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:34.520 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:34.485 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:34.452 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:09:32.727 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:09:32.725 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:09:32.723 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 942 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:09:32.721 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:09:32.718 +0000] "GET /services/server/info HTTP/1.1" 200 1554 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:09:32.716 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:22.204 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:21.964 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:21.867 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:21.843 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:21.839 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:21.824 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:21.822 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:21.793 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:21.790 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:21.690 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:21.663 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:21.640 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:21.594 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:21.561 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:19.356 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:19.342 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:19.328 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:19.272 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:19.258 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:19.081 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:19.051 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:19.014 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:09:16.645 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:09:16.634 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:09:16.239 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:09:16.236 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:09:16.233 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:09:16.224 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:09:16.217 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:09:16.182 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:09:16.173 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:09:16.166 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:09:16.150 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:09:16.136 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:09:16.111 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:09:16.083 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:09:16.071 +0000] "GET /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 4404 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:09:16.063 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:09:16.055 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4346 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:09:16.042 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:09:16.006 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:09:15.995 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:06.549 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:06.404 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:06.375 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:06.373 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:06.358 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:06.335 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:06.177 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:06.164 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:06.149 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:04.418 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:04.406 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:04.392 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:04.280 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:04.250 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:04.226 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:04.171 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:04.146 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:00.208 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:00.200 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:09:00.191 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:51.532 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:51.470 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:51.457 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:51.442 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:51.421 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:51.408 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:51.393 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:51.096 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:51.071 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:49.385 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:49.372 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:49.358 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:49.229 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:49.215 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:49.113 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:49.098 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:49.084 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:08:45.176 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:08:45.162 +0000] "GET /servicesNS/test/launcher/saved/searches?_with_new=1&search=is_visible%3D1%20AND%20disabled%3D0&count=500 HTTP/1.0" 200 27440 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:16:08:45.153 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3Dtest%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:08:45.146 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/test%3A_current HTTP/1.0" 404 156 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:08:45.133 +0000] "GET /services/configs/conf-web/settings HTTP/1.0" 200 12598 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:08:45.119 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:08:45.110 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:08:45.093 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:08:45.078 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:08:45.063 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:08:45.053 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:08:42.012 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:08:42.003 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:08:41.594 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:08:41.591 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:08:41.588 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:08:41.578 +0000] "GET /services/apps/local?search=visible%3Dtrue&count=-1 HTTP/1.0" 200 21115 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:08:41.566 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:08:41.556 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:08:41.520 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 12ms 127.0.0.1 - test [10/Jan/2023:16:08:41.510 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:08:41.503 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:08:41.487 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:08:41.473 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:08:41.449 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:08:41.422 +0000] "GET /servicesNS/-/launcher/data/ui/views?sort_mode=natural&count=25&offset=25 HTTP/1.0" 200 37699 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:08:41.413 +0000] "GET /services/authentication/users?search=roles%3D%2A&count=250 HTTP/1.0" 200 5505 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:08:41.399 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:08:41.389 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:08:41.380 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4346 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:08:41.346 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 12ms 127.0.0.1 - test [10/Jan/2023:16:08:41.337 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:08:41.074 +0000] "POST /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 3919 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:08:41.066 +0000] "GET /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 4404 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:08:41.058 +0000] "GET /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 4404 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:08:41.049 +0000] "GET /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 4404 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:08:41.016 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:08:41.006 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:36.548 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:36.475 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:36.453 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:36.366 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:36.342 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:36.318 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:36.129 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:36.113 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:36.084 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:35.461 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:35.296 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:35.285 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:35.272 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:35.257 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:35.094 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:35.070 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:35.048 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:34.995 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:34.990 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:34.968 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:34.962 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:34.945 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:34.491 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:34.478 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:34.463 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:08:32.725 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:08:32.723 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:08:32.722 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:08:32.720 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:08:32.717 +0000] "GET /services/server/info HTTP/1.1" 200 1554 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:08:32.715 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:22.319 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:21.985 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:21.968 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:21.948 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:21.942 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:21.922 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:21.758 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:21.736 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:21.709 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:21.709 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:21.687 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:21.660 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:21.474 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:21.452 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:19.379 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:19.366 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:19.352 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:19.261 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:19.247 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:19.161 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:19.148 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:19.133 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:06.489 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:06.425 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:06.403 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:06.314 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:06.297 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:06.276 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:06.166 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:06.152 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:06.138 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:04.317 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:04.313 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:04.299 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:04.294 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:04.279 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:04.080 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:04.057 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:04.034 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:00.208 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:00.202 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:00.200 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:08:00.190 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:07:52.188 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:51.478 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:51.371 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:51.350 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:51.345 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:51.327 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:51.322 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:51.300 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:51.160 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:51.138 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:49.332 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:49.318 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:49.304 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:49.303 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:49.282 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:49.083 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:49.060 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:49.037 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:07:46.352 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:07:46.342 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:36.430 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:36.383 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:36.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:36.244 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:36.225 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:36.220 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:36.210 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:36.198 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:36.195 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:35.023 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:34.819 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:34.806 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:34.793 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:34.780 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:34.661 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:34.636 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:34.632 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:34.608 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:34.603 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:34.570 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:34.542 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:34.516 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:07:32.727 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:07:32.724 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:07:32.723 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:07:32.721 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:07:32.718 +0000] "GET /services/server/info HTTP/1.1" 200 1554 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:07:32.716 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:22.274 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - - [10/Jan/2023:16:07:22.149 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:22.008 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:21.973 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:21.952 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:21.929 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:21.736 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:21.715 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:21.702 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:21.701 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:21.676 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:21.660 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:21.435 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:21.421 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:21.396 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:19.330 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:19.316 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:19.300 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:19.285 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:19.271 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:19.150 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:19.128 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:19.104 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:06.534 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:06.376 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:06.362 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:06.353 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:06.338 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:06.328 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:06.326 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:06.313 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:06.296 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:04.381 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:04.367 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:04.354 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:04.259 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:04.238 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:04.168 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:04.146 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:04.123 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:00.387 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 7ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:00.374 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:00.358 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:00.312 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 8ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:00.287 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:07:00.270 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - - [10/Jan/2023:16:06:52.101 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:51.454 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:51.453 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:51.434 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:51.409 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:51.299 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:51.286 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:51.272 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:51.206 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:51.176 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:49.385 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:49.367 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:49.353 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:49.233 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:49.211 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:49.207 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:49.198 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:49.174 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:45.768 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:45.758 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:45.388 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:45.385 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:45.382 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:45.373 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:45.366 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:45.331 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:06:45.321 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:45.314 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:45.298 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:06:45.284 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:06:45.258 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:06:45.231 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:06:45.219 +0000] "GET /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 4404 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:45.211 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:45.202 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4346 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:45.190 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:06:45.154 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:06:45.144 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:36.507 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:36.340 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:36.311 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:36.301 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:36.288 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:36.274 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:36.269 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:36.256 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:36.224 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:35.042 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:34.879 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:34.871 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:34.863 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:34.855 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:34.739 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:34.725 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:34.711 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:34.582 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:34.568 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:34.365 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:34.352 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:34.338 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:06:32.723 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:06:32.721 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:06:32.720 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:06:32.718 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:06:32.715 +0000] "GET /services/server/info HTTP/1.1" 200 1554 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:06:32.713 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:30.197 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:30.184 +0000] "GET /servicesNS/test/launcher/saved/searches?_with_new=1&search=is_visible%3D1%20AND%20disabled%3D0&count=500 HTTP/1.0" 200 27440 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:06:30.175 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3Dtest%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:30.168 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/test%3A_current HTTP/1.0" 404 156 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:30.156 +0000] "GET /services/configs/conf-web/settings HTTP/1.0" 200 12598 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:06:30.142 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:06:30.134 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:30.118 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:06:30.104 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:06:30.090 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:06:30.080 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:26.017 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:26.008 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:25.675 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:25.672 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:25.669 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:25.658 +0000] "GET /services/apps/local?search=visible%3Dtrue&count=-1 HTTP/1.0" 200 21115 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:06:25.646 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:25.609 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 13ms 127.0.0.1 - test [10/Jan/2023:16:06:25.599 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:25.592 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:25.576 +0000] "GET /servicesNS/test/launcher/data/ui/views?count=-1 HTTP/1.0" 200 95423 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:06:25.560 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:06:25.546 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:06:25.522 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:06:25.495 +0000] "GET /servicesNS/-/launcher/data/ui/views?sort_mode=natural&count=25&offset=25 HTTP/1.0" 200 37699 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:06:25.487 +0000] "GET /services/authentication/users?search=roles%3D%2A&count=250 HTTP/1.0" 200 5505 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:25.472 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:06:25.461 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:25.452 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4346 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:25.440 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:25.230 +0000] "POST /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 3919 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:06:25.222 +0000] "GET /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 4404 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:25.214 +0000] "GET /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 4404 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:25.205 +0000] "GET /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 4404 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:25.171 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:06:25.161 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:22.241 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - - [10/Jan/2023:16:06:22.065 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:21.941 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:21.913 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:21.880 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:21.868 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:21.849 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:21.654 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:21.654 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:21.622 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:21.622 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:21.600 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:21.597 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:21.596 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:21.570 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:19.408 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:19.395 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:19.381 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:19.221 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:19.207 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:19.105 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:19.084 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:19.063 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:13.984 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:13.974 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:13.629 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:13.626 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:13.624 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:13.614 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:13.607 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:13.572 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:06:13.563 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:13.556 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:13.540 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:06:13.526 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:06:13.501 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:06:13.474 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:06:13.462 +0000] "GET /servicesNS/test/launcher/data/ui/views/test HTTP/1.0" 200 4404 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:06:13.454 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:13.446 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4346 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:06:13.434 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:06:13.399 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:06:13.389 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:06.457 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:06.453 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:06.430 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:06.257 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:06.231 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:06.201 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:06.142 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:06.119 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:06.098 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:04.347 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:04.334 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:04.320 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:04.294 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:04.279 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:04.156 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:04.128 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:04.110 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:00.208 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:00.200 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:00.191 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:06:00.191 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:05:52.020 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:51.510 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:51.441 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:51.416 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:51.387 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:51.341 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:51.327 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:51.313 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:51.096 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:51.067 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:49.327 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:49.313 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:49.295 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:49.283 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:49.269 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:49.175 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:49.161 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:49.143 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:48.818 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:48.802 +0000] "GET /servicesNS/test/launcher/saved/searches?_with_new=1&search=is_visible%3D1%20AND%20disabled%3D0&count=500 HTTP/1.0" 200 27440 "-" "Python-httplib2/0.13.1 (gzip)" - - - 8ms 127.0.0.1 - test [10/Jan/2023:16:05:48.792 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3Dtest%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:05:48.785 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/test%3A_current HTTP/1.0" 404 156 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:48.772 +0000] "GET /services/configs/conf-web/settings HTTP/1.0" 200 12598 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:05:48.758 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:05:48.749 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:48.732 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:05:48.717 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:05:48.703 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:05:48.693 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:36.454 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:36.362 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:36.348 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:36.301 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:36.279 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:36.271 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:36.260 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:36.248 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:36.233 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:35.019 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:34.811 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:34.797 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:34.783 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:34.770 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:34.676 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:34.654 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:34.641 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:34.624 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:34.606 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:34.605 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:34.582 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:34.578 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:33.043 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:33.033 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:05:32.726 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:05:32.724 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:05:32.722 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:05:32.721 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:05:32.715 +0000] "GET /services/server/info HTTP/1.1" 200 1555 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:05:32.713 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:05:32.657 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:32.654 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:32.651 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:32.641 +0000] "GET /services/apps/local?search=visible%3Dtrue&count=-1 HTTP/1.0" 200 21115 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:05:32.629 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:32.592 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 12ms 127.0.0.1 - test [10/Jan/2023:16:05:32.583 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:05:32.576 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:32.560 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:05:32.546 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:05:32.520 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:05:32.493 +0000] "GET /servicesNS/-/launcher/data/ui/views?sort_mode=natural&count=25&offset=25 HTTP/1.0" 200 37699 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:05:32.485 +0000] "GET /services/authentication/users?search=roles%3D%2A&count=250 HTTP/1.0" 200 5505 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:05:32.471 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:05:32.460 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:32.452 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4346 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:32.418 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 12ms 127.0.0.1 - test [10/Jan/2023:16:05:32.408 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:05:27.413 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:27.403 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:05:27.059 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:27.056 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:05:27.054 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:27.037 +0000] "GET /services/apps/local?search=visible%3Dtrue&count=-1 HTTP/1.0" 200 21115 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:05:26.965 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:26.958 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:26.924 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 10ms 127.0.0.1 - test [10/Jan/2023:16:05:26.914 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:05:26.907 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:26.890 +0000] "GET /servicesNS/test/launcher/data/ui/views?count=-1 HTTP/1.0" 200 95423 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:05:26.872 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69043 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:05:26.858 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:05:26.832 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:05:26.801 +0000] "GET /servicesNS/-/launcher/data/ui/views?sort_mode=natural&count=25 HTTP/1.0" 200 59671 "-" "Python-httplib2/0.13.1 (gzip)" - - - 6ms 127.0.0.1 - test [10/Jan/2023:16:05:26.792 +0000] "GET /services/authentication/users?search=roles%3D%2A&count=250 HTTP/1.0" 200 5505 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:05:26.778 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:05:26.767 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:26.759 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4346 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:26.746 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:05:26.525 +0000] "POST /servicesNS/test/launcher/data/ui/views HTTP/1.0" 201 3919 "-" "Python-httplib2/0.13.1 (gzip)" - - - 7ms 127.0.0.1 - test [10/Jan/2023:16:05:26.517 +0000] "GET /servicesNS/test/launcher/data/ui/views/_new HTTP/1.0" 200 4037 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:26.509 +0000] "GET /servicesNS/test/launcher/data/ui/views/_new/_new HTTP/1.0" 200 4037 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:26.501 +0000] "GET /servicesNS/test/launcher/data/ui/views/_new HTTP/1.0" 200 4037 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:26.467 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 10ms 127.0.0.1 - test [10/Jan/2023:16:05:26.457 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:05:25.741 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:05:25.731 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:22.689 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:22.390 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:22.367 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:22.346 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:22.324 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:22.221 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:22.007 +0000] "GET /servicesNS/nobody/assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 58 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:21.988 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:05:21.982 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:21.981 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:21.971 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:21.967 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:21.952 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:21.929 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:21.928 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:21.901 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:21.897 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:21.701 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:21.673 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:19.442 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:19.434 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:19.426 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:19.318 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:19.293 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:19.278 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:19.126 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:19.111 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:06.377 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:06.376 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:06.352 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:06.271 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:06.258 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:06.252 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:06.240 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:06.226 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:06.192 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:04.396 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:04.382 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:04.367 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:04.257 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:04.243 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:04.052 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:04.038 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:04.023 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:05:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:04:51.924 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:51.492 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:51.480 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:51.472 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:51.442 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:51.306 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:51.286 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:51.260 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:51.148 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:51.133 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:49.400 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:49.387 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:49.373 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:49.216 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:49.202 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:49.068 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:49.055 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:49.040 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:36.574 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:36.491 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:36.464 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:36.394 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:36.373 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:36.348 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:36.058 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:36.044 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:36.030 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:35.007 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:34.775 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2106 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:34.762 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:34.749 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:34.728 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:34.716 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:34.703 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:34.689 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:34.685 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:34.670 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:34.429 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:34.403 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:34.378 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:04:32.723 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:04:32.721 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:04:32.720 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:04:32.718 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:04:32.715 +0000] "GET /services/server/info HTTP/1.1" 200 1554 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:04:32.713 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:04:25.861 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:04:25.848 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:04:25.447 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:04:25.444 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:04:25.441 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:04:25.411 +0000] "GET /servicesNS/test/launcher/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47362 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:04:25.174 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:04:25.166 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:04:24.988 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:04:24.978 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:04:24.971 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:04:24.956 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 67188 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:04:24.942 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:04:24.917 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:04:24.881 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 10ms 127.0.0.1 - test [10/Jan/2023:16:04:24.861 +0000] "GET /servicesNS/test/launcher/data/ui/views/_new HTTP/1.0" 200 4037 "-" "Python-httplib2/0.13.1 (gzip)" - - - 6ms 127.0.0.1 - test [10/Jan/2023:16:04:24.853 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:04:24.845 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4346 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:04:24.832 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:04:24.797 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:04:24.787 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:22.242 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:21.948 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:21.897 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - - [10/Jan/2023:16:04:21.885 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:21.854 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:21.833 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:21.808 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:21.780 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:21.760 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:21.734 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:21.701 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:21.680 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:21.650 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:21.525 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:21.490 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:19.400 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:19.386 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:19.372 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:19.242 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:19.228 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:19.204 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:19.184 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:19.169 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:04:12.394 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:04:12.384 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:06.456 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:06.362 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:06.336 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:06.323 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:06.290 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:06.276 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:06.170 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:06.157 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:06.140 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:04.420 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:04.408 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:04.396 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:04.189 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:04.171 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:04.154 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:04.126 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:04.099 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:00.202 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:00.193 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:04:00.191 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:03:51.834 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:51.600 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:51.492 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:51.479 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:51.451 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:51.377 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:51.364 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:51.350 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:51.100 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:51.086 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:49.320 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:49.306 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:49.300 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:49.286 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:49.283 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:49.143 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:49.122 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:49.092 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:36.566 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:36.530 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:36.506 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:36.377 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:36.349 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:36.335 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:36.079 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:36.061 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:36.046 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:35.334 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:35.163 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2106 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:35.149 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:35.137 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:35.124 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:35.013 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:34.986 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:34.972 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:34.814 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:34.784 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:34.752 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:34.730 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:34.706 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:34.470 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:34.436 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:34.392 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:03:32.726 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:03:32.723 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:03:32.722 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:03:32.720 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:03:32.717 +0000] "GET /services/server/info HTTP/1.1" 200 1554 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:03:32.714 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 868 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:22.286 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:22.028 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:22.005 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:21.970 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:21.944 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:21.840 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:03:21.798 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:21.762 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:21.740 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:21.716 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:21.629 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:21.616 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:21.602 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:21.493 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:21.458 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:19.328 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:19.316 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:19.314 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:19.290 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:19.279 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:19.263 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:19.241 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:19.227 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:03:12.495 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:03:12.486 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:03:12.070 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:03:12.067 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:03:12.064 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:03:11.723 +0000] "GET /servicesNS/test/launcher/messages HTTP/1.0" 200 1764 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:03:11.704 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:03:11.408 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 13ms 127.0.0.1 - test [10/Jan/2023:16:03:11.397 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:03:11.390 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:03:11.374 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 67188 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:03:11.358 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:03:11.334 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:16:03:11.288 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:16:03:11.279 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:06.592 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:06.493 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:06.466 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:06.447 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:06.419 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:06.404 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:06.098 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:06.076 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:06.049 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:04.382 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:04.369 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:04.355 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:04.256 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:04.242 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:04.079 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:04.065 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:04.052 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:00.221 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:00.213 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:03:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:02:59.712 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:02:59.703 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:02:59.517 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:02:59.514 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:02:59.508 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:02:59.503 +0000] "GET /services/authentication/users/test HTTP/1.0" 200 6634 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:02:59.489 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:02:59.480 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:02:59.465 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 67188 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:02:59.451 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:02:59.437 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:02:59.428 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:02:59.257 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:16:02:59.241 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 67188 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:02:59.227 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:02:59.213 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:16:02:59.203 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:16:02:59.048 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 5985 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:16:02:59.039 +0000] "GET /services/authentication/users/test HTTP/1.0" 200 6634 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - - [10/Jan/2023:16:02:59.030 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:02:51.749 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:51.481 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:51.443 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:51.420 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:51.393 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:51.318 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:51.292 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:51.269 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:51.265 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:51.249 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:49.448 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:49.441 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:49.433 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:49.207 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:49.185 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:49.156 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:49.147 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:49.132 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:02:40.341 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:02:40.332 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:36.545 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:36.528 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:36.461 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:36.300 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:36.278 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:36.264 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:36.140 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:36.114 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:36.088 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:35.021 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:34.809 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2106 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:34.784 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:34.770 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:34.763 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:34.754 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:34.750 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:34.723 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:34.581 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:34.555 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:34.424 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:34.403 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:34.373 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:02:32.727 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:02:32.725 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:02:32.724 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:02:32.721 +0000] "GET /services/server/health/splunkd/local?output_mode=json HTTP/1.1" 200 1021 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:02:32.719 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:02:32.716 +0000] "GET /services/server/info HTTP/1.1" 200 1554 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:02:32.713 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:22.350 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:22.186 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:22.177 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:22.169 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:22.162 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:21.842 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:02:21.720 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:21.673 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:21.644 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:21.540 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:21.500 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:21.475 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:21.388 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:21.361 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:21.333 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:19.363 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:19.350 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:19.336 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:19.275 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:19.261 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:19.139 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:19.137 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:19.135 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:19.131 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:19.127 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:19.061 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:19.032 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:19.012 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:02:18.160 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:02:17.967 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:02:17.964 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:02:17.958 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:02:17.901 +0000] "GET /servicesNS/admin/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 527704 "-" "Python-httplib2/0.13.1 (gzip)" - - - 25ms 127.0.0.1 - admin [10/Jan/2023:16:02:17.877 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:09.305 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:09.302 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:09.300 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:09.297 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:09.293 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:02:08.212 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:02:08.203 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:02:08.011 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:02:08.008 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:02:08.002 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.976 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.961 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.953 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.944 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.927 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.912 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 61613 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.890 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 61613 "-" "Python-httplib2/0.13.1 (gzip)" - - - 10ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.878 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.715 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.692 +0000] "GET /servicesNS/admin/launcher/data/ui/views?count=-1 HTTP/1.0" 200 96115 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.673 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 6ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.658 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 61613 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.641 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 61613 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.632 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.475 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 6262 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:16:02:07.465 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - - [10/Jan/2023:16:02:07.457 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:06.440 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:06.423 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:06.402 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:06.374 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:06.304 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:06.281 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:06.267 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:06.153 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:06.136 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:04.346 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:04.333 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:04.319 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:04.294 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:04.280 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:04.034 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:04.021 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:04.007 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:00.207 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:00.199 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:02:00.190 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:01:51.671 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:51.496 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:51.388 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:51.364 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:51.319 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:51.293 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:51.271 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:51.153 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:51.116 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:51.090 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:49.314 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:49.301 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:49.288 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:49.250 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:49.243 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:49.227 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:49.220 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:49.200 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:36.513 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:36.436 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:36.413 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:36.393 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:36.391 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:36.372 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:36.344 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:36.083 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:36.060 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:35.036 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:34.778 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2106 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:34.758 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:34.757 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:34.754 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:34.740 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:34.739 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:34.730 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:34.724 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:34.714 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:34.562 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:34.523 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:34.497 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:01:32.874 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:01:32.872 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:01:32.871 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 943 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:01:32.869 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:01:32.866 +0000] "GET /services/server/info HTTP/1.1" 200 1556 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:16:01:32.863 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:22.345 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:22.115 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:22.094 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:22.073 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:22.040 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:21.748 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:21.725 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:21.710 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:01:21.622 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:21.475 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:21.458 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:21.444 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:21.386 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:21.360 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:21.332 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:19.374 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:19.361 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:19.347 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:19.321 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:19.307 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:19.148 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:19.131 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:19.109 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:06.496 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:06.484 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:06.471 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:06.453 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:06.342 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:06.311 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:06.289 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:06.038 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:06.024 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:04.435 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:04.421 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:04.407 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:04.281 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:04.265 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:04.246 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:04.242 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:04.221 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:01.813 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6485 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - - [10/Jan/2023:16:01:01.627 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:01:01.179 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:00.217 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12746 "-" "Python-httplib2/0.13.1 (gzip)" - - - 10ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:00.215 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:00.209 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:00.207 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:00.198 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:01:00.197 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:55.518 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:55.356 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:55.347 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:55.339 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:55.331 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:16:00:51.577 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:51.517 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:51.503 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:51.480 +0000] "POST /servicesNS/nobody/splunk_monitoring_console/saved/searches/DMC%20Asset%20-%20Build%20Standalone%20Asset%20Table/notify?trigger.condition_state=1 HTTP/1.1" 200 2009 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:51.462 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6126 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:51.440 +0000] "GET /services/search/distributed/groups?count=0 HTTP/1.1" 200 1709 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:51.432 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:51.393 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:51.369 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:51.336 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:51.233 +0000] "GET /servicesNS/-/splunk_monitoring_console/admin/summarization?actual_only=false&_nop_sid=b565f23805be7683_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNSbcdd5a32417b4512%20AND%20eai:acl.app%3Dsplunk_monitoring_console&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1719 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:51.170 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:51.146 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:51.121 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:49.380 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:49.364 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:49.348 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:49.272 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:49.258 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:49.087 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:49.067 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:49.045 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:36.504 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:36.397 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:36.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:36.345 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:36.329 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:36.305 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:36.279 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:36.222 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:36.207 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:35.133 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:34.916 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2106 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:34.891 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:34.878 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:34.865 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:34.827 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:34.803 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:34.778 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:34.680 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:34.656 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:34.416 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:34.394 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:34.376 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:00:33.667 +0000] "POST /services/receivers/bundle-delta/sh1 HTTP/1.1" 200 548 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 43ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:00:33.664 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 881 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:00:32.879 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 485 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:00:32.877 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:00:32.871 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 881 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:00:32.870 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:00:32.866 +0000] "GET /services/server/info HTTP/1.1" 200 1553 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:16:00:32.863 +0000] "GET /services/server/health/splunkd/local?output_mode=json HTTP/1.1" 200 963 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:16:00:32.861 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 867 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:32.838 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general/masterSettings HTTP/1.0" 200 2263 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:32.835 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general/masterSettings HTTP/1.0" 200 2263 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:32.832 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - - [10/Jan/2023:16:00:25.776 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:25.285 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:25.246 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.660 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6091 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.612 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6091 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.436 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=635235ca788500d7_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS9ec0bcf3f4088903%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.420 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=ed1693eb0d929591_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS9ec0bcf3f4088903%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 21ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.237 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.217 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.193 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 8ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.173 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.153 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.130 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.098 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.065 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.057 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6868 "-" "splunk-sdk-python/1.6.14" - - - 584ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.040 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:24.002 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6868 "-" "splunk-sdk-python/1.6.14" - - - 681ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:23.950 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 17ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:23.869 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:23.033 +0000] "GET /services/shcluster/config?output_mode=json HTTP/1.0" 200 1757 "-" "Python-httplib2/0.13.1 (gzip)" - - - 12ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:22.898 +0000] "GET /servicesNS/nobody/splunk_monitoring_console/configs/conf-splunk_monitoring_console_assets/settings?output_mode=json HTTP/1.0" 200 1904 "-" "Python-httplib2/0.13.1 (gzip)" - - - 65ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:22.801 +0000] "GET /services/server/info HTTP/1.0" 200 6075 "-" "splunk-sdk-python/1.6.15" - - - 17ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:22.778 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 19ms 127.0.0.1 - - [10/Jan/2023:16:00:21.498 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 29ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:19.462 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:19.454 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:19.446 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:19.311 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:19.275 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:19.253 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:19.156 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:19.129 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:05.536 +0000] "GET /servicesNS/nobody/python_upgrade_readiness_app/storage/collections/data/era_remote_schedule_scan HTTP/1.0" 200 3 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:05.491 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:05.481 +0000] "GET /servicesNS/-/search/admin/summarization?actual_only=false&_nop_sid=ef390c5ea17c83fc_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS390701173d7ed44d%20AND%20eai:acl.app%3Dsearch&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:05.434 +0000] "POST /services/receivers/simple?index=_audit&source=upgrade_readiness_app&sourcetype=python_upgrade_readiness_app HTTP/1.0" 200 667 "-" "splunk-sdk-python/1.6.14" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:05.426 +0000] "GET /servicesNS/nobody/system/data/indexes/_audit HTTP/1.0" 200 14228 "-" "splunk-sdk-python/1.6.14" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:05.420 +0000] "GET /servicesNS/nobody/python_upgrade_readiness_app/storage/collections/data/pra_remote_schedule_scan HTTP/1.0" 200 3 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:05.382 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:05.372 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=a0277755c8871c92_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:05.138 +0000] "POST /services/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 369ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:05.069 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:05.062 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:05.049 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:05.040 +0000] "GET /servicesNS/-/search/admin/summarization?actual_only=false&_nop_sid=04e13540787507bf_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsearch&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:05.021 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.999 +0000] "GET /servicesNS/nobody/python_upgrade_readiness_app/storage/collections/data/era_email_notification_switch HTTP/1.0" 200 3 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.876 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.866 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 529ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.847 +0000] "GET /servicesNS/nobody/python_upgrade_readiness_app/storage/collections/data/pra_remote_dismiss_file?output_mode=json HTTP/1.0" 200 3 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.836 +0000] "GET /servicesNS/-/search/admin/summarization?actual_only=false&_nop_sid=eebe44f26d8e10ea_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS390701173d7ed44d%20AND%20eai:acl.app%3Dsearch&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.823 +0000] "GET /servicesNS/nobody/python_upgrade_readiness_app/storage/collections/data/pra_remote_dismiss_app?output_mode=json HTTP/1.0" 200 3 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.788 +0000] "POST /services/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 307ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.687 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.681 +0000] "GET /servicesNS/nobody/python_upgrade_readiness_app/storage/collections/data/jra_remote_schedule_scan HTTP/1.0" 200 3 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.641 +0000] "GET /servicesNS/-/search/admin/summarization?actual_only=false&_nop_sid=7671f4baff1569ab_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS390701173d7ed44d%20AND%20eai:acl.app%3Dsearch&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.592 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.587 +0000] "POST /services/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 319ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.531 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.514 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=d6cd83d6832e4f08_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.510 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.485 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.467 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.463 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.455 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.437 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.434 +0000] "GET /servicesNS/-/search/admin/summarization?actual_only=false&_nop_sid=1916d2375d3147c4_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS390701173d7ed44d%20AND%20eai:acl.app%3Dsearch&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.272 +0000] "GET /servicesNS/-/search/admin/summarization?actual_only=false&_nop_sid=36be58cd4416ce69_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsearch&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.222 +0000] "GET /servicesNS/nobody/python_upgrade_readiness_app/storage/collections/data/pra_jra_email_notification_switch HTTP/1.0" 200 3 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.024 +0000] "GET /servicesNS/nobody/python_upgrade_readiness_app/storage/collections/data/pra_remote_schedule_scan HTTP/1.0" 200 3 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:04.010 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.960 +0000] "GET /servicesNS/-/search/admin/summarization?actual_only=false&_nop_sid=3a06a8cad6ec8500_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS390701173d7ed44d%20AND%20eai:acl.app%3Dsearch&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.859 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.821 +0000] "GET /servicesNS/-/search/admin/summarization?actual_only=false&_nop_sid=7cf506ecdbe61be8_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS390701173d7ed44d%20AND%20eai:acl.app%3Dsearch&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.809 +0000] "POST /services/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 910ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.704 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.663 +0000] "GET /servicesNS/-/search/admin/summarization?actual_only=false&_nop_sid=4721b1c8b706d122_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsearch&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.431 +0000] "POST /services/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 617ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.396 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.386 +0000] "GET /servicesNS/-/search/admin/summarization?actual_only=false&_nop_sid=9c2793ad6163e0c1_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsearch&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.284 +0000] "POST /services/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 600ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.246 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.236 +0000] "GET /servicesNS/-/search/admin/summarization?actual_only=false&_nop_sid=2ee5ad7163a7158d_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsearch&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.148 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.137 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=acd07b172f93f93a_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:03.131 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 1485ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.872 +0000] "POST /services/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 846ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.855 +0000] "GET /services/apps/local?output_mode=json&count=0 HTTP/1.0" 200 32604 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.846 +0000] "GET /services/authentication/users?output_mode=json&count=0 HTTP/1.0" 200 4232 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.696 +0000] "POST /services/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 1783ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.599 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.584 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=3bf0ccd5f9265e4b_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.477 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 684ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.468 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.438 +0000] "POST /services/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 829ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.426 +0000] "POST /services/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 2105ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.416 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=a6fb4d36e60fd5d8_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.402 +0000] "POST /services/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 1009ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.377 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 246ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.281 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6124 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.269 +0000] "GET /services/pura_app_list?type=deployment HTTP/1.0" 200 229 "-" "Python-httplib2/0.13.1 (gzip)" - - - 598ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.150 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 339ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:02.033 +0000] "GET /servicesNS/-/search/admin/summarization?actual_only=false&_nop_sid=b6ba1adc97e7886d_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsearch&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:01.510 +0000] "POST /services/search/jobs/ HTTP/1.0" 200 6902 "-" "splunk-sdk-python/1.6.14" - - - 797ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:01.028 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 8ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:00.970 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:16:00:00.914 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:49.336 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:49.322 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:49.308 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:49.276 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:49.262 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:49.069 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:49.047 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:49.025 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:35.026 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:34.811 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2106 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:34.798 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:34.785 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:34.771 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:34.701 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:34.667 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:34.667 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:34.648 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:34.624 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:34.536 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:34.517 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:34.490 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:19.381 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:19.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:19.354 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:19.250 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:19.228 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:19.217 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:19.200 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:19.167 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:04.314 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:04.302 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:04.291 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:04.278 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:04.264 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:04.067 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:04.045 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:04.016 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:59:00.196 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:49.357 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:49.344 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:49.330 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:49.290 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:49.276 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:49.143 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:49.129 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:49.110 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:35.555 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:35.388 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2106 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:35.375 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:35.363 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:35.349 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:35.166 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:35.136 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:35.114 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:35.104 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:35.080 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:35.051 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:35.044 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:34.998 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:34.685 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:58:34.654 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:49.024 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:57:43.295 +0000] "GET /services/server/settings/settings HTTP/1.0" 200 5400 "-" "Python-httplib2/0.13.1 (gzip)" - - - 6ms 127.0.0.1 - admin [10/Jan/2023:15:57:43.286 +0000] "POST /services/server/control HTTP/1.0" 200 2222 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:57:43.276 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:57:42.891 +0000] "GET /services/properties/server?fillcontents=1 HTTP/1.0" 200 50032 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:35.026 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:34.810 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:34.796 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:34.782 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:34.769 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:34.706 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:34.692 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:34.680 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:34.667 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:34.653 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:34.479 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:34.454 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:34.430 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:57:32.916 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:57:32.913 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:57:32.912 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 882 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:15:57:32.910 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 872 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:57:32.907 +0000] "GET /services/server/info HTTP/1.1" 200 1554 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:15:57:32.905 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 872 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:31.876 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:31.666 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:31.664 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:31.651 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:31.635 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:31.616 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:31.378 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:31.346 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:31.320 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:57:19.661 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:19.396 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:19.383 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:19.368 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:19.228 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:19.207 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:19.201 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:19.182 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:19.153 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:17.571 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:17.317 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2107 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:17.303 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:17.291 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:17.268 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:17.100 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:17.082 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:17.073 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:17.025 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:16.923 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:16.900 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:16.897 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:16.872 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:16.841 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:57:15.815 +0000] "GET /services/properties/server?fillcontents=1 HTTP/1.0" 200 50032 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:04.349 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:04.336 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:04.322 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:04.292 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:04.270 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:04.256 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:04.220 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:04.198 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:01.864 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:01.724 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:01.702 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:01.680 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:01.633 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:01.600 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:01.568 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:01.402 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:01.371 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:00.214 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:00.206 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:00.202 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:57:00.193 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:57.856 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:57.853 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:57.851 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:57.848 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:57.845 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.956 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.946 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.780 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.777 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.774 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.769 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.752 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.743 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.726 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.711 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.695 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.686 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.533 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.517 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.502 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.487 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.477 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.321 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 6262 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:56:56.312 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - - [10/Jan/2023:15:56:56.302 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:56:49.623 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:49.434 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:49.421 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:49.409 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:49.263 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:49.238 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:49.208 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:49.183 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:49.166 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:56:48.033 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:46.737 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:46.729 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:46.713 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:46.684 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:46.567 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:46.546 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:46.522 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:46.494 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:46.464 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:35.022 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:34.795 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:34.782 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:34.768 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:34.745 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:34.705 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:34.705 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:34.679 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:34.678 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:34.654 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:34.630 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:34.601 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:34.575 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:56:32.918 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:56:32.915 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:56:32.914 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 882 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:56:32.910 +0000] "GET /services/server/health/splunkd/local?output_mode=json HTTP/1.1" 200 1138 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:15:56:32.909 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 872 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:56:32.906 +0000] "GET /services/server/info HTTP/1.1" 200 1553 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:15:56:32.904 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 872 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:31.924 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:31.754 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:31.730 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:31.706 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:31.645 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:31.621 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:31.514 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:31.492 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:31.461 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:24.442 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:24.432 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:56:24.126 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:24.123 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:56:24.120 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:24.111 +0000] "GET /services/apps/local?search=visible%3Dtrue&count=-1 HTTP/1.0" 200 21115 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:15:56:24.099 +0000] "GET /servicesNS/test/search/properties/app?fillcontents=1 HTTP/1.0" 200 8730 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:24.084 +0000] "GET /servicesNS/test/search/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1940 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:56:24.077 +0000] "GET /servicesNS/test/search/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:24.060 +0000] "GET /servicesNS/test/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 73483 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:56:24.045 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:56:23.992 +0000] "GET /servicesNS/test/search/data/modular-inputs?count=-1 HTTP/1.0" 200 52100 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:15:56:23.967 +0000] "GET /servicesNS/-/search/data/lookup-table-files?sort_mode=natural&count=25 HTTP/1.0" 200 19877 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:15:56:23.958 +0000] "GET /services/authentication/users?search=roles%3D%2A&count=250 HTTP/1.0" 200 5505 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:56:23.944 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:56:23.935 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:23.927 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4346 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:23.914 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:56:21.969 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:21.959 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:56:21.586 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:21.583 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:56:21.580 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:21.572 +0000] "GET /servicesNS/test/search/properties/app?fillcontents=1 HTTP/1.0" 200 8730 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:56:21.565 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:21.550 +0000] "GET /servicesNS/test/search/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1940 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:56:21.542 +0000] "GET /servicesNS/test/search/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:21.524 +0000] "GET /servicesNS/test/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 73483 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:56:21.508 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:56:21.484 +0000] "GET /servicesNS/test/search/data/modular-inputs?count=-1 HTTP/1.0" 200 52100 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:15:56:21.442 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 9ms 127.0.0.1 - test [10/Jan/2023:15:56:21.432 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - - [10/Jan/2023:15:56:19.585 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:19.402 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:19.390 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:19.376 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:19.216 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:19.214 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:19.199 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:19.189 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:19.168 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:17.903 +0000] "POST /services/streams/rtsearch/0 HTTP/1.1" 403 164 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:17.700 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:17.348 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2107 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:17.331 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:17.317 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:17.303 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:17.255 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:17.232 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:17.177 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:17.168 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:17.130 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:17.092 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:16.897 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:16.848 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:16.819 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:56:16.414 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:56:16.409 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:56:16.404 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:56:16.379 +0000] "GET /services/authentication/users/test HTTP/1.0" 200 6634 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:56:16.320 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 6ms 127.0.0.1 - test [10/Jan/2023:15:56:16.273 +0000] "GET /servicesNS/test/search/data/ui/nav/default HTTP/1.0" 200 4492 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:56:16.188 +0000] "GET /servicesNS/test/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 73483 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:15:56:16.125 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:15:56:16.068 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:15:56:16.009 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:04.399 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:04.386 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:04.372 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:04.239 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:04.225 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:04.113 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:04.099 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:04.085 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:01.979 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:01.879 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:01.865 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:01.851 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:01.547 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:01.533 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:01.307 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:01.294 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:01.272 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:00.219 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:00.215 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:00.211 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:00.207 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:56:00.198 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:55:49.546 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:49.334 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:49.320 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:49.305 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:49.305 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:49.289 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:49.107 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:49.085 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:49.058 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:46.702 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:46.671 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:46.656 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:46.642 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:46.524 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:46.503 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:46.490 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:46.476 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:46.448 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:55:42.870 +0000] "GET /services/properties/server?fillcontents=1 HTTP/1.0" 403 164 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:35.071 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:34.908 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:34.899 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:34.891 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:34.884 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:34.659 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:34.646 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:34.632 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:34.444 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:34.420 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:34.400 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:34.250 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:34.233 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:55:32.923 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:55:32.920 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:55:32.919 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 882 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:55:32.916 +0000] "GET /services/server/health/splunkd/local?output_mode=json HTTP/1.1" 200 1101 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:15:55:32.914 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 872 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:55:32.911 +0000] "GET /services/server/info HTTP/1.1" 200 1553 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:15:55:32.909 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 872 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:31.873 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:31.658 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:31.658 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:31.648 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:31.635 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:31.634 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:31.633 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:31.606 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:31.606 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:55:22.422 +0000] "POST /services/streams/rtsearch/0 HTTP/1.1" 403 164 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:55:19.527 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:19.417 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:19.404 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:19.387 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:19.213 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:19.199 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:19.182 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:19.159 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:19.133 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:19.026 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:18.664 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:18.642 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:18.620 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:18.598 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:18.196 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:17.872 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:17.867 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:17.829 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:17.824 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:17.789 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:17.784 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:17.514 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:17.465 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:55:17.453 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:55:17.368 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:17.349 +0000] "GET /servicesNS/nobody/assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 58 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:17.261 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:17.216 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:17.174 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:55:17.142 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:55:17.130 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:55:17.118 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:55:17.077 +0000] "GET /services/authentication/users/test HTTP/1.0" 200 6634 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:55:17.009 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:15:55:16.956 +0000] "GET /servicesNS/test/search/data/ui/nav/default HTTP/1.0" 200 4492 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:55:16.861 +0000] "GET /servicesNS/test/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 73483 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:15:55:16.793 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:15:55:16.706 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:15:55:16.645 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:55:16.442 +0000] "GET /servicesNS/test/search/data/ui/nav/default HTTP/1.0" 200 4492 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:55:16.407 +0000] "GET /servicesNS/test/search/data/ui/nav/default HTTP/1.0" 200 4492 "-" "Python-httplib2/0.13.1 (gzip)" - - - 7ms 127.0.0.1 - test [10/Jan/2023:15:55:16.329 +0000] "GET /servicesNS/test/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 73483 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:15:55:16.253 +0000] "GET /servicesNS/test/search/data/ui/views?count=-1 HTTP/1.0" 200 124837 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:15:55:16.182 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 9ms 127.0.0.1 - test [10/Jan/2023:15:55:16.110 +0000] "GET /servicesNS/test/search/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 73483 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:15:55:16.077 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:15:55:16.006 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:55:15.991 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 12ms 127.0.0.1 - test [10/Jan/2023:15:55:15.915 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - test [10/Jan/2023:15:55:15.883 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:04.337 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:04.323 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:04.310 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:04.304 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:04.283 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:04.092 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:04.066 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:04.045 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:01.943 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:01.836 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:01.823 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:01.807 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:01.560 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:01.539 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:01.317 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:01.304 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:01.290 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:00.202 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:00.200 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:55:00.191 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:54:49.491 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:49.322 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:49.309 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:49.309 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:49.283 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:49.278 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:49.252 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:49.241 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:49.225 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:46.703 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:46.689 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:46.687 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:46.674 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:46.660 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:46.581 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:46.429 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:46.408 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:46.380 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:35.053 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:34.890 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:34.881 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:34.873 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:34.866 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:34.654 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:34.633 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:34.602 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:34.498 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:34.476 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:34.216 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:34.180 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:34.151 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:54:32.918 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:54:32.916 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:54:32.914 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 882 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:54:32.911 +0000] "GET /services/server/health/splunkd/local?output_mode=json HTTP/1.1" 200 1021 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:15:54:32.909 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 869 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:54:32.906 +0000] "GET /services/server/info HTTP/1.1" 200 1558 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:15:54:32.904 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 869 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:31.817 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:31.661 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:31.634 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:31.619 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:31.588 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:31.574 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:31.388 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:31.364 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:31.333 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:54:29.170 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:54:29.161 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:54:28.995 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:54:28.993 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:54:28.990 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:54:28.985 +0000] "GET /services/authentication/users/test HTTP/1.0" 200 6634 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:54:28.970 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:54:28.962 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:54:28.946 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 67188 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:54:28.932 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:54:28.918 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:54:28.907 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:54:28.757 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:54:28.741 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 67188 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:54:28.727 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:54:28.711 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:54:28.702 +0000] "GET /services/server/info HTTP/1.0" 200 6120 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:54:28.556 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 5985 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:54:28.548 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:54:19.455 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:19.379 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:19.365 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:19.351 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:19.211 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:19.197 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:19.114 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:19.101 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:19.084 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:17.554 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:17.268 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:17.238 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:17.212 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:17.168 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:17.103 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:17.069 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:17.048 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:17.036 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:16.850 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:16.838 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:16.815 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:16.804 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:16.789 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:54:07.585 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:04.417 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:04.405 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:04.392 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:04.251 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:04.231 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:04.206 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:04.121 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:04.091 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:01.869 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:01.645 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:01.617 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:01.603 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:01.552 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:01.538 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:01.489 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:01.468 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:01.439 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:54:00.191 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:55.208 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:55.184 +0000] "GET /services/server/info HTTP/1.0" 200 6121 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:54.876 +0000] "GET /services/server/info HTTP/1.0" 200 6111 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:54.874 +0000] "GET /services/server/info HTTP/1.0" 200 6111 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:54.871 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:54.860 +0000] "GET /services/apps/local?search=visible%3Dtrue&count=-1 HTTP/1.0" 200 21115 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:15:53:54.789 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:54.781 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:54.746 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:15:53:54.736 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:54.729 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:54.714 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 67188 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:54.700 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:54.675 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:15:53:54.651 +0000] "GET /servicesNS/-/search/data/lookup-table-files?sort_mode=natural&count=25 HTTP/1.0" 200 19877 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:15:53:54.642 +0000] "GET /services/authentication/users?search=roles%3D%2A&count=250 HTTP/1.0" 200 5505 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:54.628 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:54.619 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:54.611 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4346 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:54.600 +0000] "GET /services/server/info HTTP/1.0" 200 6121 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:54.381 +0000] "POST /servicesNS/test/search/data/lookup-table-files HTTP/1.0" 201 3755 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:15:53:54.373 +0000] "GET /servicesNS/test/search/data/lookup-table-files/_new HTTP/1.0" 200 4151 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:54.365 +0000] "GET /servicesNS/test/search/data/lookup-table-files/_new HTTP/1.0" 200 4151 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:54.331 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:15:53:54.321 +0000] "GET /services/server/info HTTP/1.0" 200 6121 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - - [10/Jan/2023:15:53:49.412 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:49.410 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:49.398 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:49.383 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:49.194 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:49.179 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:49.176 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:49.153 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:49.146 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:46.698 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:46.685 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:46.671 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:46.667 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:46.654 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:46.485 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:46.334 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:46.309 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:46.294 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:35.360 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:35.194 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:35.186 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:35.178 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:35.170 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:34.962 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:34.945 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:34.935 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:34.915 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:34.908 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:34.888 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:34.660 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:34.646 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:34.423 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:34.394 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:34.371 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:53:32.922 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:53:32.920 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:53:32.919 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 882 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:53:32.915 +0000] "GET /services/server/health/splunkd/local?output_mode=json HTTP/1.1" 200 1067 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:15:53:32.914 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 872 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:53:32.911 +0000] "GET /services/server/info HTTP/1.1" 200 1556 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:15:53:32.909 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 872 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:31.882 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:31.738 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:31.714 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:31.708 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:31.677 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:31.653 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:31.371 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:31.356 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:31.342 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:30.454 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:30.444 +0000] "GET /services/server/info HTTP/1.0" 200 6121 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:30.071 +0000] "GET /services/server/info HTTP/1.0" 200 6111 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:30.068 +0000] "GET /services/server/info HTTP/1.0" 200 6111 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:30.065 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:30.037 +0000] "GET /servicesNS/test/launcher/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47362 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:29.799 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:29.641 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 14ms 127.0.0.1 - test [10/Jan/2023:15:53:29.631 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:29.625 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:29.609 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 67188 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:29.594 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:29.570 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:15:53:29.543 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:29.530 +0000] "GET /servicesNS/test/launcher/data/lookup-table-files/_new HTTP/1.0" 200 4167 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:15:53:29.517 +0000] "POST /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 6003 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:15:53:29.510 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4243 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:29.501 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4243 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:29.494 +0000] "GET /services/messages/restart_required HTTP/1.0" 404 159 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:29.486 +0000] "GET /servicesNS/test/user-prefs/data/user-prefs/general HTTP/1.0" 200 4243 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:29.473 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:15:53:29.439 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:15:53:29.428 +0000] "GET /services/server/info HTTP/1.0" 200 6121 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:24.977 +0000] "GET /services/messages HTTP/1.0" 200 1732 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:24.967 +0000] "GET /services/server/info HTTP/1.0" 200 6121 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:20.458 +0000] "GET /services/server/info HTTP/1.0" 200 6111 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:20.455 +0000] "GET /services/server/info HTTP/1.0" 200 6111 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:20.451 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:20.098 +0000] "GET /servicesNS/test/launcher/properties/app?fillcontents=1 HTTP/1.0" 200 7899 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:19.805 +0000] "GET /servicesNS/test/search/data/ui/manager?count=-1 HTTP/1.0" 200 240804 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - test [10/Jan/2023:15:53:19.794 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates?search=name%3D_admin%3A_current HTTP/1.0" 200 1948 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:19.787 +0000] "GET /servicesNS/test/launcher/data/ui/viewstates/_admin%3A_current HTTP/1.0" 404 158 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:19.772 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 67188 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:19.755 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:19.730 +0000] "GET /servicesNS/test/launcher/data/modular-inputs?count=-1 HTTP/1.0" 200 52198 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - test [10/Jan/2023:15:53:19.685 +0000] "GET /servicesNS/test/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 240928 "-" "Python-httplib2/0.13.1 (gzip)" - - - 12ms 127.0.0.1 - test [10/Jan/2023:15:53:19.675 +0000] "GET /services/server/info HTTP/1.0" 200 6121 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - - [10/Jan/2023:15:53:19.364 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:19.287 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:19.284 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:19.272 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:19.272 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:19.258 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:19.059 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:19.035 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:19.013 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:17.518 +0000] "GET /services/server/info HTTP/1.1" 200 6121 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:17.154 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:17.129 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:17.128 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2110 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:17.101 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:17.101 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:17.075 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:17.054 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:16.926 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:16.900 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:16.898 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:16.883 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:16.865 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:16.825 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:13.021 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:13.011 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:12.851 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:12.848 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:12.842 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5180 "-" "splunk-sdk-python/1.6.15" - - - 4ms 127.0.0.1 - test [10/Jan/2023:15:53:12.837 +0000] "GET /services/authentication/users/test HTTP/1.0" 200 6634 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:12.823 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:12.814 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:12.798 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 67188 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:12.784 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:12.770 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:12.760 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:12.610 +0000] "GET /servicesNS/test/launcher/data/ui/nav/default HTTP/1.0" 200 4284 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - test [10/Jan/2023:15:53:12.593 +0000] "GET /servicesNS/test/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 67188 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:12.579 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:12.565 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 47330 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - test [10/Jan/2023:15:53:12.555 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - test [10/Jan/2023:15:53:12.407 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 5826 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - test [10/Jan/2023:15:53:12.398 +0000] "GET /services/authentication/users/test HTTP/1.0" 200 6634 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - - [10/Jan/2023:15:53:12.388 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:04.314 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:04.297 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:04.288 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:04.283 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:04.274 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:04.109 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:04.096 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:04.082 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:01.856 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:01.637 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:01.611 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:01.587 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:01.568 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:01.540 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:01.516 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:01.511 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:01.484 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:53:00.916 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:00.222 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:00.214 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:00.202 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:53:00.191 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:57.322 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:57.320 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:57.317 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:57.315 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:57.311 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.714 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.704 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.548 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.545 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.542 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.537 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.522 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.514 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.498 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.482 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.467 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.458 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.314 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.299 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.284 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.269 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.260 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:56.112 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 6262 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:52:56.103 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:49.389 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:49.376 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:49.362 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:52:49.322 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:49.178 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:49.158 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:49.135 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:49.114 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:49.089 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:46.776 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:46.632 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:46.604 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:46.597 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:46.588 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:46.572 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:46.557 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:46.522 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:46.496 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:52:44.867 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:52:44.858 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:35.057 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:34.889 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:34.881 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:34.873 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:34.865 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:34.558 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:34.533 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:34.507 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:34.413 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:34.387 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:34.168 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:34.134 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:34.099 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:52:32.918 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:52:32.916 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:52:32.914 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 882 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:52:32.911 +0000] "GET /services/server/health/splunkd/local?output_mode=json HTTP/1.1" 200 1090 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:15:52:32.909 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 871 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:52:32.906 +0000] "GET /services/server/info HTTP/1.1" 200 1554 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:15:52:32.904 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 871 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:31.799 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:31.660 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:31.628 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:31.613 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:31.573 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:31.559 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:31.380 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:31.356 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:31.334 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:19.551 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:19.548 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:19.545 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:19.543 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:19.539 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:19.381 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:19.368 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:19.354 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:52:19.274 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:19.194 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:19.179 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:19.145 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:19.119 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:19.097 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:52:18.848 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:18.682 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:18.678 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:18.673 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:18.605 +0000] "GET /servicesNS/admin/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 527704 "-" "Python-httplib2/0.13.1 (gzip)" - - - 21ms 127.0.0.1 - admin [10/Jan/2023:15:52:18.596 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:17.541 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:17.228 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2107 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:17.202 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:17.163 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:17.145 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:17.052 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:17.024 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:17.006 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:16.926 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:16.900 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:16.872 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:16.777 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:16.756 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:16.725 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:14.578 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:14.575 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:14.573 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:14.570 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:14.566 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.887 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.878 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.706 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.703 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.700 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.695 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.680 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.671 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.655 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.641 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.625 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.615 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.464 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.448 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.433 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.417 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.408 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:52:13.260 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 6262 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:52:13.251 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:04.361 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:04.348 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:04.334 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:04.240 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:04.226 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:04.053 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:04.039 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:04.026 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:01.923 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:01.811 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:01.789 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:01.757 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:01.485 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:01.485 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:01.466 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:01.458 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:01.434 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:00.217 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:00.209 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:00.209 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:00.201 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:00.199 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:52:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:49.309 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:49.297 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:49.245 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:49.232 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:51:49.226 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:49.211 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:49.121 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:49.108 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:49.093 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:51:49.091 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:46.665 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:46.653 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:46.651 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:46.636 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:46.633 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:46.549 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:46.361 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:46.347 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:46.332 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:35.072 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:34.909 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:34.901 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:34.893 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:34.885 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:34.504 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:34.482 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:34.468 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:34.372 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:34.358 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:34.203 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:34.173 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:34.150 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:51:32.918 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:51:32.915 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:51:32.914 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 882 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:15:51:32.912 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 871 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:51:32.909 +0000] "GET /services/server/info HTTP/1.1" 200 1553 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:15:51:32.907 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 871 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:31.880 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:31.696 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:31.673 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:31.646 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:31.586 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:31.559 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:31.537 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:31.536 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:31.509 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:22.523 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:22.521 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:22.518 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:22.516 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:22.512 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.900 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.890 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.710 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.707 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.704 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.698 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.683 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.674 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.658 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.642 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.626 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.616 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.470 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.453 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.438 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.422 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 63038 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.413 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.264 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 6262 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:51:21.254 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:19.350 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:19.336 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:19.322 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:19.194 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:19.180 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:51:19.171 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:19.083 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:19.070 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:19.055 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:17.528 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:17.266 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2107 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:17.239 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:17.222 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:17.196 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:17.165 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:17.138 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:17.110 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:16.980 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:16.856 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:16.842 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:16.732 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:16.697 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:16.674 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:04.275 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:04.266 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:04.261 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:04.254 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:04.242 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:04.110 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:04.084 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:04.062 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:01.720 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:01.571 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:01.568 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:01.564 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:01.549 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:01.545 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:01.542 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:01.533 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:01.520 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:00.223 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:00.215 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:00.211 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:00.203 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:00.197 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:51:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:49.285 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:49.284 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:49.272 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:49.269 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:49.259 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:50:49.113 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:49.033 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:49.020 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:48.994 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:46.636 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:46.632 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:46.610 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:46.610 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:46.593 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:46.592 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:46.482 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:46.469 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:46.455 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:35.001 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:34.839 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:34.828 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:34.816 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:34.804 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:34.577 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:34.564 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:34.559 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:34.537 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:34.536 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:34.182 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:34.140 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:34.118 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:50:32.916 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 486 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:50:32.914 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1336 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:50:32.912 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 882 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:50:32.909 +0000] "GET /services/server/health/splunkd/local?output_mode=json HTTP/1.1" 200 1131 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:15:50:32.907 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 871 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:50:32.904 +0000] "GET /services/server/info HTTP/1.1" 200 1553 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:15:50:32.902 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 871 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:31.855 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:31.701 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:31.674 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:31.650 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:31.560 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:31.536 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:31.518 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:31.440 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:31.425 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:20.102 +0000] "POST //servicesNS/nobody/splunk_assist/configs/conf-assist/supervisor HTTP/1.0" 200 4244 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:20.090 +0000] "POST //servicesNS/nobody/splunk_assist/configs/conf-assist/updates HTTP/1.0" 200 4363 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:19.283 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:19.272 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:19.268 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:19.259 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:19.245 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:50:19.066 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:19.044 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:19.015 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:18.986 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.960 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.533 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2107 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.510 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.484 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.468 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.341 +0000] "GET /servicesNS/nobody/assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 58 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.314 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.288 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.277 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.269 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.244 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.220 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.193 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.172 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:17.148 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:16.929 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:16.908 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:16.882 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:04.289 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:04.277 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:04.276 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:04.263 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:04.262 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:04.120 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:04.092 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:04.067 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:01.947 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:01.719 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:01.701 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:01.669 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:01.580 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:01.550 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:01.410 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:01.385 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:01.361 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:00.229 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:00.221 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:00.213 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:00.205 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:50:00.195 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:55.116 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:55.114 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:55.112 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:55.109 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6542 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:55.106 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:49:54.259 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:49:54.091 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:49:54.088 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:49:54.085 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5497 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:49:54.036 +0000] "GET /servicesNS/admin/launcher/data/ui/manager?count=-1 HTTP/1.0" 200 527704 "-" "Python-httplib2/0.13.1 (gzip)" - - - 17ms 127.0.0.1 - admin [10/Jan/2023:15:49:54.026 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:49.345 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:49.332 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:49.318 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:49.251 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:49.237 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:49.121 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:49.100 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:49.072 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:49:49.018 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:48.472 +0000] "POST //servicesNS/nobody/splunk_assist/configs/conf-assist/ui HTTP/1.0" 200 4440 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:48.460 +0000] "POST //servicesNS/nobody/splunk_assist/configs/conf-assist/ui HTTP/1.0" 200 4407 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:46.752 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:46.739 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:46.725 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:46.570 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:46.550 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:46.529 +0000] "GET /servicesNS/nobody/splunk_assist/storage/passwords/tenant_id?output_mode=json HTTP/1.0" 404 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:46.419 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:46.406 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:46.391 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 4 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:49:41.103 +0000] "GET /services/receivers/bundle/sh1 HTTP/1.1" 200 160 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:40.928 +0000] "GET /services/search/distributed/peers?output_mode=json HTTP/1.0" 200 343 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:40.925 +0000] "GET /services/search/distributed/config?output_mode=json HTTP/1.0" 200 1150 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:40.920 +0000] "GET /services/authentication/users/admin?output_mode=json HTTP/1.0" 200 4532 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:40.916 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6485 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:40.910 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:49:40.355 +0000] "POST /services/receivers/bundle/sh1 HTTP/1.1" 200 19 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 747ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:49:39.939 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 820 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:39.865 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:39.701 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:39.692 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:39.685 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:39.675 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.644 +0000] "GET /services/search/timeparser/tz HTTP/1.0" 200 77 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.635 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.627 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.429 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.426 +0000] "GET /services/server/info HTTP/1.0" 200 6108 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.420 +0000] "GET /servicesNS/nobody/splunk_instrumentation/configs/conf-telemetry/general HTTP/1.0" 200 5440 "-" "splunk-sdk-python/1.6.15" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.396 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.380 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 61613 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.372 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.363 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.347 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.332 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 61613 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.316 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 61613 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.307 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.155 +0000] "GET /servicesNS/admin/launcher/data/ui/nav/default HTTP/1.0" 200 4367 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.135 +0000] "GET /servicesNS/admin/launcher/data/ui/views?count=-1 HTTP/1.0" 200 96115 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.117 +0000] "GET /servicesNS/admin/launcher/data/ui/views?digest=1&count=-1 HTTP/1.0" 200 69876 "-" "Python-httplib2/0.13.1 (gzip)" - - - 6ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.102 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 61613 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.085 +0000] "GET /services/apps/local?search=disabled%3Dfalse&count=-1 HTTP/1.0" 200 61613 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - admin [10/Jan/2023:15:49:39.075 +0000] "GET /services/server/info HTTP/1.0" 200 6118 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:49:38.923 +0000] "GET /services/data/user-prefs HTTP/1.0" 200 6295 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:49:38.913 +0000] "GET /services/authentication/users/admin HTTP/1.0" 200 12208 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - - [10/Jan/2023:15:49:38.903 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:38.763 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:38.508 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2108 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:38.492 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:38.478 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:38.465 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:34.385 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:34.372 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:34.358 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:34.171 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:34.158 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:34.054 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:34.036 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:34.009 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:49:33.059 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:49:33.057 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:49:33.055 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 821 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:49:33.055 +0000] "GET /services/server/health/splunkd/local?output_mode=json HTTP/1.1" 200 1111 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:15:49:33.054 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 871 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:49:33.051 +0000] "GET /services/server/info HTTP/1.1" 200 1553 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:49:33.047 +0000] "GET /services/server/health/splunkd/local?output_mode=json HTTP/1.1" 200 1112 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:15:49:33.045 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 871 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:31.591 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:31.578 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:31.569 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:31.556 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:31.542 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:31.368 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:31.344 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:31.316 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:49:26.380 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:49:26.255 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:49:25.541 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:19.328 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:19.316 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:19.302 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:19.210 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:19.197 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:19.058 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:19.036 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 802 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:19.004 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - - [10/Jan/2023:15:49:18.967 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:17.336 +0000] "GET /services/server/info HTTP/1.1" 200 6118 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:17.156 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2107 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:17.143 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:17.129 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:17.116 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:17.066 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 62 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:17.056 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 74 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:17.047 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 64 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:17.038 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 65 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:17.027 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 67 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:17.017 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 63 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:17.008 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.998 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 68 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.993 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.989 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 69 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.980 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.971 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 66 "-" "Python-httplib2/0.13.1 (gzip)" - - - 7ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.965 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.962 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 65 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.951 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 64 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.942 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 63 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.931 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 63 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.920 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 68 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.918 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.908 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 64 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.904 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.898 +0000] "GET /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons?fields=_key HTTP/1.0" 200 3 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.846 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 1441 "-" "Python-httplib2/0.13.1 (gzip)" - - - 43ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.779 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.757 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.720 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.252 +0000] "POST /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 5134 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.249 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6485 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.242 +0000] "POST /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 5134 "-" "splunk-sdk-python/1.6.15" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.239 +0000] "GET /servicesNS/nobody/splunk_instrumentation/storage/collections/data/instrumentation/instrumentation_deploymentID HTTP/1.0" 404 140 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.235 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general/masterSettings HTTP/1.0" 200 2263 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.228 +0000] "POST /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 5054 "-" "splunk-sdk-python/1.6.15" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.225 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general/masterSettings HTTP/1.0" 200 2263 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:16.222 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:11.778 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 1444 "-" "Python-httplib2/0.13.1 (gzip)" - - - 55ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:08.423 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:08.415 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:06.724 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 41ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:06.218 +0000] "GET /services/server/info HTTP/1.0" 200 6075 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:04.487 +0000] "POST /servicesNS/nobody/splunk_monitoring_console/saved/searches/DMC%20Asset%20-%20Build%20Standalone%20Asset%20Table/notify?trigger.condition_state=1 HTTP/1.1" 200 2009 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:04.480 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6091 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:04.469 +0000] "GET /services/search/distributed/groups?count=0 HTTP/1.1" 200 1709 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:04.431 +0000] "GET /servicesNS/-/splunk_monitoring_console/admin/summarization?actual_only=false&_nop_sid=957a2d861ef20917_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS19be43cc182da043%20AND%20eai:acl.app%3Dsplunk_monitoring_console&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1719 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 5ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:04.276 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:04.266 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:04.253 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:04.247 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:04.240 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:04.086 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:04.068 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:04.041 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:01.670 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 41ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:01.643 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:01.630 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:01.615 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:01.542 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:01.528 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:01.312 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:01.299 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:01.285 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:00.211 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 10ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:00.210 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:00.203 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:00.202 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:00.192 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:49:00.191 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:56.609 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 52ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:56.204 +0000] "GET /services/server/info HTTP/1.0" 200 6075 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:51.555 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 41ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:49.334 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:49.321 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:49.305 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:49.245 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:49.232 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:49.132 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:49.111 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:49.097 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:48:48.916 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 401 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:46.596 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:46.588 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:46.582 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:46.578 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:46.565 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:46.503 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 41ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:46.376 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:46.353 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:46.325 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:46.190 +0000] "GET /services/server/info HTTP/1.0" 200 6075 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:41.431 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 63ms 127.0.0.1 - - [10/Jan/2023:15:48:39.036 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:38.380 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:38.367 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:38.063 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6091 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 10ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.945 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6091 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.767 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=6945273c972be752_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 8ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.725 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=06c8dbc2701d16dd_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.431 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.399 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.391 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.364 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.348 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6867 "-" "splunk-sdk-python/1.6.14" - - - 763ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.321 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6867 "-" "splunk-sdk-python/1.6.14" - - - 646ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.315 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.304 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.289 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.270 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.236 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 12ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.231 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 12ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:37.189 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 10ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:36.403 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 14ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:36.272 +0000] "GET /servicesNS/nobody/splunk_monitoring_console/configs/conf-splunk_monitoring_console_assets/settings?output_mode=json HTTP/1.0" 200 1904 "-" "Python-httplib2/0.13.1 (gzip)" - - - 62ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:36.161 +0000] "GET /services/server/info HTTP/1.0" 200 6075 "-" "splunk-sdk-python/1.6.15" - - - 16ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:36.123 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6324 "-" "splunk-sdk-python/1.6.15" - - - 33ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:36.092 +0000] "GET /services/shcluster/config?output_mode=json HTTP/1.0" 200 1757 "-" "Python-httplib2/0.13.1 (gzip)" - - - 16ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:48:33.053 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:48:33.050 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1337 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:48:33.048 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 820 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:15:48:33.046 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 871 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:48:33.041 +0000] "GET /services/server/info HTTP/1.1" 200 1555 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:15:48:33.038 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 871 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 10.224.114.154 - - [10/Jan/2023:15:48:33.028 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 871 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:31.710 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:31.703 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:31.695 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:31.617 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:31.595 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:31.570 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:31.389 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:31.364 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:17.369 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:17.193 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:17.175 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:17.167 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:17.155 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:16.947 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:16.924 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:16.897 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:16.892 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:16.860 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:16.850 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:16.815 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:16.790 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:48:14.789 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 820 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:48:03.303 +0000] "GET /services/receivers/bundle/sh1 HTTP/1.1" 200 161 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:48:02.683 +0000] "POST /services/receivers/bundle/sh1 HTTP/1.1" 200 19 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 619ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:48:02.302 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 506 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:01.808 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 87ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:01.607 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:01.595 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:01.583 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:01.577 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:01.575 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:01.567 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:01.552 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:01.542 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:01.044 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 28ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:00.996 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:00.949 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 8ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:00.479 +0000] "POST //servicesNS/nobody/splunk_assist/configs/conf-assist/metadata HTTP/1.0" 200 4057 "-" "Python-httplib2/0.13.1 (gzip)" - - - 30ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:00.452 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:00.430 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:00.415 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:00.392 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:00.372 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:00.346 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:00.215 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:00.207 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:00.194 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:00.136 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:48:00.083 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 791 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:47:59.242 +0000] "GET /services/messages/restart_required?output_mode=json HTTP/1.1" 404 82 "-" "ansible-httpget" - - - 12ms 127.0.0.1 - admin [10/Jan/2023:15:47:58.310 +0000] "GET /services/messages/restart_required?output_mode=json HTTP/1.1" 404 82 "-" "ansible-httpget" - - - 10ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:47:57.446 +0000] "GET /services/messages?count=1000&search=name%21%3Dremote:* HTTP/1.1" 200 487 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:47:57.442 +0000] "GET /services/data/indexes?mode=minimum&count=0&datatype=all HTTP/1.1" 200 1338 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:47:57.441 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 507 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:15:47:57.439 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 873 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:47:57.439 +0000] "GET /services/server/health/splunkd/local?output_mode=json HTTP/1.1" 200 1021 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:47:57.435 +0000] "GET /services/server/info HTTP/1.1" 200 1555 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:15:47:57.433 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 873 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:47:57.426 +0000] "GET /services/admin/bundles/sh1?count=-1 HTTP/1.1" 200 507 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 10.224.114.154 - - [10/Jan/2023:15:47:57.424 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 873 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - splunk-system-user [10/Jan/2023:15:47:57.421 +0000] "GET /services/server/info HTTP/1.1" 200 1555 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:15:47:57.419 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 873 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - - [10/Jan/2023:15:47:57.415 +0000] "POST /services/admin/auth-tokens HTTP/1.1" 201 873 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 10.224.114.154 - admin [10/Jan/2023:15:47:57.408 +0000] "POST /services/admin/certificates/sh1?output_mode=json HTTP/1.1" 200 259 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 5ms 10.224.114.154 - - [10/Jan/2023:15:47:57.407 +0000] "GET /services/server/info HTTP/1.1" 401 130 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:47:57.402 +0000] "POST /servicesNS/admin/search/search/distributed/peers HTTP/1.0" 201 1890 "-" "Python-httplib2/0.13.1 (gzip)" - - - 28ms 127.0.0.1 - admin [10/Jan/2023:15:47:57.388 +0000] "POST /services/auth/login HTTP/1.0" 200 214 "-" "Python-httplib2/0.13.1 (gzip)" - - - 5ms 127.0.0.1 - - [10/Jan/2023:15:47:56.998 +0000] "GET /static/splunkrc_cmds.xml HTTP/1.1" 200 270229 "-" "SplunkCli/6.0 (build 6818ac46f2ec)" - - - 10ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:56.715 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 77ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:56.511 +0000] "GET /services/server/info HTTP/1.0" 200 6034 "-" "splunk-sdk-python/1.6.15" - - - 1ms 10.224.114.154 - - [10/Jan/2023:15:47:56.196 +0000] "GET / HTTP/1.1" 200 2273 "-" "ansible-httpget" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:47:55.644 +0000] "POST /services/licenser/licenses/ HTTP/1.1" 400 198 "-" "SplunkCli/6.0 (build 6818ac46f2ec)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:47:55.533 +0000] "GET /services/licenser/licenses/ HTTP/1.1" 200 15525 "-" "SplunkCli/6.0 (build 6818ac46f2ec)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:47:55.527 +0000] "POST /services/auth/login HTTP/1.1" 200 214 "-" "SplunkCli/6.0 (build 6818ac46f2ec)" - - - 6ms 127.0.0.1 - - [10/Jan/2023:15:47:55.407 +0000] "GET /services/licenser/licenses/ HTTP/1.1" 401 130 "-" "SplunkCli/6.0 (build 6818ac46f2ec)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:47:55.395 +0000] "GET /static/splunkrc_cmds.xml HTTP/1.1" 200 270229 "-" "SplunkCli/6.0 (build 6818ac46f2ec)" - - - 9ms 127.0.0.1 - - [10/Jan/2023:15:47:52.461 +0000] "GET / HTTP/1.1" 200 2163 "-" "ansible-httpget" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:51.581 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 115ms 127.0.0.1 - - [10/Jan/2023:15:47:51.257 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:49.133 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6050 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:48.968 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6050 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:48.863 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=41120064bdc3b636_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:48.859 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=91a6b1792cec14ac_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS48d46ed5c2f7ef55%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:48.798 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:48.745 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 777 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:48.621 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6824 "-" "splunk-sdk-python/1.6.14" - - - 371ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:48.601 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6824 "-" "splunk-sdk-python/1.6.14" - - - 557ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:47.770 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:47.724 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:47.697 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:47.671 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 777 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:47.636 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 777 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:47.592 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 777 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:47.569 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:47.509 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:47.505 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 8ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:47.443 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 12ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:47.344 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 777 "-" "Python-httplib2/0.13.1 (gzip)" - - - 8ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:46.612 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:46.590 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:46.579 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:46.575 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:46.562 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:46.557 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:46.552 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 15ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:46.547 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:46.521 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:46.489 +0000] "GET /services/server/info HTTP/1.0" 200 6034 "-" "splunk-sdk-python/1.6.15" - - - 10ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:46.468 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6324 "-" "splunk-sdk-python/1.6.15" - - - 16ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:46.316 +0000] "GET /servicesNS/nobody/splunk_monitoring_console/configs/conf-splunk_monitoring_console_assets/settings?output_mode=json HTTP/1.0" 200 1904 "-" "Python-httplib2/0.13.1 (gzip)" - - - 105ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:46.221 +0000] "GET /services/shcluster/config?output_mode=json HTTP/1.0" 200 1757 "-" "Python-httplib2/0.13.1 (gzip)" - - - 19ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:31.643 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:31.634 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:31.629 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:31.613 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:31.608 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:31.593 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:31.376 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:31.344 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:17.298 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:17.136 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:17.124 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:17.112 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:17.099 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:16.892 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:16.878 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:16.743 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:16.722 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:16.698 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:16.612 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:16.589 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:16.563 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:01.708 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:01.701 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:01.693 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:01.500 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:01.479 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:01.449 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:01.322 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:01.300 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:00.207 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:00.199 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:47:00.190 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:46.613 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:46.604 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:46.499 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:46.477 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:46.450 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:46.429 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:46.410 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:46.385 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:31.710 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:31.702 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:31.693 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:31.547 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:31.520 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:31.506 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:31.452 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:31.432 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:22.025 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:21.859 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:21.850 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:21.843 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:21.834 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:21.242 +0000] "GET /services/server/info HTTP/1.1" 200 6120 "-" "curl" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:21.072 +0000] "GET //services/server/info?output_mode=json HTTP/1.0" 200 2109 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:21.063 +0000] "GET //servicesNS/nobody/splunk_secure_gateway/storage/collections/data/meta/soc2_opt_in HTTP/1.0" 404 140 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:21.055 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:21.047 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:16.612 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:16.604 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:16.510 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:16.494 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:16.481 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:16.422 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:16.396 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:16.365 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:01.638 +0000] "POST //servicesNS/nobody/splunk_assist/configs/conf-assist/metadata HTTP/1.0" 200 4057 "-" "Python-httplib2/0.13.1 (gzip)" - - - 9ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:01.602 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:01.589 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:01.562 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:01.533 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:01.516 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:01.486 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:01.486 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:01.463 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 798 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:00.219 +0000] "GET /servicesNS/nobody/system/configs/conf-web/settings HTTP/1.0" 200 12717 "-" "Python-httplib2/0.13.1 (gzip)" - - - 11ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:00.211 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:46:00.198 +0000] "GET /servicesNS/nobody/system/web-features/feature:quarantine_files HTTP/1.0" 200 4570 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:58.653 +0000] "POST /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 5134 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:58.650 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6485 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:58.645 +0000] "POST /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 5134 "-" "splunk-sdk-python/1.6.15" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:58.641 +0000] "GET /servicesNS/nobody/splunk_instrumentation/storage/collections/data/instrumentation/instrumentation_deploymentID HTTP/1.0" 404 140 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:58.639 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general/masterSettings HTTP/1.0" 200 2263 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:58.629 +0000] "POST /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 5054 "-" "splunk-sdk-python/1.6.15" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:58.626 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general/masterSettings HTTP/1.0" 200 2263 "-" "splunk-sdk-python/1.6.15" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:58.623 +0000] "GET /services/server/info HTTP/1.0" 200 6110 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.265 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 62 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.254 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 74 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.246 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 64 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.236 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 65 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.226 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 67 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.122 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 63 "-" "Python-httplib2/0.13.1 (gzip)" - - - 96ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.113 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 71 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.104 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 68 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.093 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 69 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.083 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 66 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.074 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 65 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.065 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 64 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.054 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 63 "-" "Python-httplib2/0.13.1 (gzip)" - - - 3ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.043 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 63 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.032 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 68 "-" "Python-httplib2/0.13.1 (gzip)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.023 +0000] "POST /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons HTTP/1.0" 201 64 "-" "Python-httplib2/0.13.1 (gzip)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:54.012 +0000] "GET /servicesNS/nobody/splunk-dashboard-studio/storage/collections/data/splunk-dashboard-icons?fields=_key HTTP/1.0" 200 3 "-" "Python-httplib2/0.13.1 (gzip)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:53.960 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 1441 "-" "Python-httplib2/0.13.1 (gzip)" - - - 44ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:51.008 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:50.996 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:48.910 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 41ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:48.614 +0000] "GET /services/server/info HTTP/1.0" 200 6075 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:46.746 +0000] "POST /servicesNS/nobody/splunk_monitoring_console/saved/searches/DMC%20Asset%20-%20Build%20Standalone%20Asset%20Table/notify?trigger.condition_state=1 HTTP/1.1" 200 2009 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:46.740 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6091 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:46.733 +0000] "GET /services/search/distributed/groups?count=0 HTTP/1.1" 200 1709 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:46.703 +0000] "GET /servicesNS/-/splunk_monitoring_console/admin/summarization?actual_only=false&_nop_sid=30d78166adf6c99a_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNSbcdd5a32417b4512%20AND%20eai:acl.app%3Dsplunk_monitoring_console&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1719 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 6ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:46.675 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:46.661 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:46.496 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:46.484 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:46.470 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:46.469 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:46.444 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:46.422 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:43.856 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 41ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:38.801 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 41ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:38.606 +0000] "GET /services/server/info HTTP/1.0" 200 6075 "-" "splunk-sdk-python/1.6.15" - - - 2ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:33.743 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 46ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:31.587 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:31.579 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:31.571 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:31.474 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:31.461 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:31.447 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:31.321 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:31.298 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - admin [10/Jan/2023:15:45:29.852 +0000] "GET /services/messages/restart_required?output_mode=json HTTP/1.1" 404 82 "-" "ansible-httpget" - - - 5ms 127.0.0.1 - admin [10/Jan/2023:15:45:29.457 +0000] "GET /services/messages/restart_required?output_mode=json HTTP/1.1" 404 82 "-" "ansible-httpget" - - - 5ms 127.0.0.1 - admin [10/Jan/2023:15:45:28.982 +0000] "POST /services/data/inputs/http HTTP/1.1" 201 4442 "-" "ansible-httpget" - - - 13ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:28.649 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 75ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:28.592 +0000] "GET /services/server/info HTTP/1.0" 200 6075 "-" "splunk-sdk-python/1.6.15" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:45:28.586 +0000] "GET /services/data/inputs/http/splunk_hec_token?output_mode=json HTTP/1.1" 404 89 "-" "ansible-httpget" - - - 8ms 127.0.0.1 - admin [10/Jan/2023:15:45:28.110 +0000] "POST /services/data/inputs/http/http HTTP/1.1" 200 4534 "-" "ansible-httpget" - - - 27ms 127.0.0.1 - admin [10/Jan/2023:15:45:27.697 +0000] "POST /services/licenser/licenses/ HTTP/1.1" 400 198 "-" "SplunkCli/6.0 (build 6818ac46f2ec)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:45:27.591 +0000] "GET /services/licenser/licenses/ HTTP/1.1" 200 15525 "-" "SplunkCli/6.0 (build 6818ac46f2ec)" - - - 1ms 127.0.0.1 - admin [10/Jan/2023:15:45:27.585 +0000] "POST /services/auth/login HTTP/1.1" 200 222 "-" "SplunkCli/6.0 (build 6818ac46f2ec)" - - - 5ms 127.0.0.1 - - [10/Jan/2023:15:45:27.480 +0000] "GET /services/licenser/licenses/ HTTP/1.1" 401 130 "-" "SplunkCli/6.0 (build 6818ac46f2ec)" - - - 0ms 127.0.0.1 - - [10/Jan/2023:15:45:27.470 +0000] "GET /static/splunkrc_cmds.xml HTTP/1.1" 200 270229 "-" "SplunkCli/6.0 (build 6818ac46f2ec)" - - - 9ms 127.0.0.1 - - [10/Jan/2023:15:45:24.486 +0000] "GET / HTTP/1.1" 200 2163 "-" "ansible-httpget" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:23.478 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 155ms 127.0.0.1 - - [10/Jan/2023:15:45:23.247 +0000] "GET /services/server/info HTTP/1.0" 401 148 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:21.089 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6091 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:21.083 +0000] "GET /services/server/info?count=0 HTTP/1.1" 200 6091 "-" "Splunk/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:20.950 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:20.905 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:20.855 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=b758b44fbd7b5cb6_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS9ec0bcf3f4088903%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 1ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:20.812 +0000] "GET /servicesNS/-/system/admin/summarization?actual_only=false&_nop_sid=6e10da05d3d50756_tmp&use_normalized=yes&noProxy=true&nodetails=1&search=summary.normHash%3DNS9ec0bcf3f4088903%20AND%20eai:acl.app%3Dsystem&sort_key=summary.size&sort_dir=desc&sort_mode=num HTTP/1.0" 200 1700 "-" "Splunkd/9.0.0 (Linux 4.9.0-19-amd64; arch=x86_64)" - - - 4ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:20.575 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6868 "-" "splunk-sdk-python/1.6.14" - - - 535ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:20.560 +0000] "POST /servicesNS/nobody/system/search/jobs/ HTTP/1.0" 200 6868 "-" "splunk-sdk-python/1.6.14" - - - 576ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:19.845 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:19.789 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:19.769 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:19.703 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:19.687 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:19.663 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:19.608 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:19.542 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 0ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:19.536 +0000] "GET //services/cluster/config?output_mode=json HTTP/1.0" 200 2610 "-" "Python-httplib2/0.13.1 (gzip)" - - - 20ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:19.457 +0000] "GET /services/properties/telemetry/general/sendSupportUsage HTTP/1.0" 200 5 "-" "Python-httplib2/0.13.1 (gzip)" - - - 16ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:19.397 +0000] "GET //services/server/roles?output_mode=json HTTP/1.0" 200 787 "-" "Python-httplib2/0.13.1 (gzip)" - - - 28ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:18.564 +0000] "GET /services/server/info HTTP/1.0" 200 6075 "-" "splunk-sdk-python/1.6.15" - - - 16ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:18.527 +0000] "GET /servicesNS/nobody/splunk_instrumentation/telemetry/general HTTP/1.0" 200 6324 "-" "splunk-sdk-python/1.6.15" - - - 34ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:18.480 +0000] "GET /servicesNS/nobody/splunk_monitoring_console/configs/conf-splunk_monitoring_console_assets/settings?output_mode=json HTTP/1.0" 200 1904 "-" "Python-httplib2/0.13.1 (gzip)" - - - 60ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:18.442 +0000] "GET /services/kvstore/status?output_mode=json HTTP/1.0" 200 900 "-" "Python-httplib2/0.13.1 (gzip)" - - - 20ms 127.0.0.1 - splunk-system-user [10/Jan/2023:15:45:18.177 +0000] "GET /services/shcluster/config?output_mode=json HTTP/1.0" 200 1757 "-" "Python-httplib2/0.13.1 (gzip)" - - - 13ms