Skip to content

Splunk Enterprise app WHOIS History

Look up WHOIS history for a domain and display the results in a table.

Edit any of these three fields to refresh the results table:

  • Domain
  • Mode
    • list: Lists the WHOIS history records for the domain.
    • check_existence: Returns a boolean has_history_entries indicating whether any history records exist, without returning the records themselves.
    • count: Returns the number of history records for the domain.
  • Sort
    • date_desc: Sorts records from newest to oldest.
    • date_asc: Sorts records from oldest to newest.

The results are consistent with the WHOIS History API responses, where more information is available. The results table has the following columns:

dateis_privateregistrantregistration_createdregistration_expiresregistration_updateregistration_statusesname_serversserverrecord