<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic My Playbook cannot be find in Alerts dashboard in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/My-Playbook-cannot-be-find-in-Alerts-dashboard/m-p/479116#M82230</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;

&lt;P&gt;I'm on Splunk 7.3.3&lt;/P&gt;

&lt;P&gt;with the "Security Monitoring for Splunk" &lt;A href="https://splunkbase.splunk.com/app/4131"&gt;https://splunkbase.splunk.com/app/4131&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;I have install all the addons.&lt;/P&gt;

&lt;P&gt;I have create a Playbook Entries, but when i try to find it in the dashboard "Alerts" where you can find all your schedule alerts, i only have my personnal rules, rules from this app but not my new rules. &lt;BR /&gt;
I notice on the playbook the owner is admin and the others pre-rules are Monitoring App.&lt;/P&gt;

&lt;P&gt;Any idea why i can't find my rule ? I cannot configure the workflow in this case.&lt;/P&gt;

&lt;P&gt;Best regards&lt;/P&gt;</description>
    <pubDate>Wed, 22 Apr 2020 09:59:21 GMT</pubDate>
    <dc:creator>dadataz</dc:creator>
    <dc:date>2020-04-22T09:59:21Z</dc:date>
    <item>
      <title>My Playbook cannot be find in Alerts dashboard</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/My-Playbook-cannot-be-find-in-Alerts-dashboard/m-p/479116#M82230</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;

&lt;P&gt;I'm on Splunk 7.3.3&lt;/P&gt;

&lt;P&gt;with the "Security Monitoring for Splunk" &lt;A href="https://splunkbase.splunk.com/app/4131"&gt;https://splunkbase.splunk.com/app/4131&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;I have install all the addons.&lt;/P&gt;

&lt;P&gt;I have create a Playbook Entries, but when i try to find it in the dashboard "Alerts" where you can find all your schedule alerts, i only have my personnal rules, rules from this app but not my new rules. &lt;BR /&gt;
I notice on the playbook the owner is admin and the others pre-rules are Monitoring App.&lt;/P&gt;

&lt;P&gt;Any idea why i can't find my rule ? I cannot configure the workflow in this case.&lt;/P&gt;

&lt;P&gt;Best regards&lt;/P&gt;</description>
      <pubDate>Wed, 22 Apr 2020 09:59:21 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/My-Playbook-cannot-be-find-in-Alerts-dashboard/m-p/479116#M82230</guid>
      <dc:creator>dadataz</dc:creator>
      <dc:date>2020-04-22T09:59:21Z</dc:date>
    </item>
    <item>
      <title>Re: My Playbook cannot be find in Alerts dashboard</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/My-Playbook-cannot-be-find-in-Alerts-dashboard/m-p/479117#M82231</link>
      <description>&lt;P&gt;I check the "Searches, Reports, and Alerts" for the "App: Security Monitoring for Splunk (security_monitoring_for_splunk)"&lt;BR /&gt;
I find the default rule for exemple : "5001-INV-Incorrectly_Routed_DNS_Traffic" when you click on edit just show Edit permission, Edit Alert Disable, Advanced Edit and Clone.&lt;BR /&gt;
Instead the rules i have create have : edit Search, Edit Permissions, Edit Schedule, Edit Acceleration, Edit Summary Indexing, Disable, Advanced Edit, clone, embed, move and Delete.&lt;/P&gt;</description>
      <pubDate>Wed, 30 Sep 2020 05:04:06 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/My-Playbook-cannot-be-find-in-Alerts-dashboard/m-p/479117#M82231</guid>
      <dc:creator>dadataz</dc:creator>
      <dc:date>2020-09-30T05:04:06Z</dc:date>
    </item>
    <item>
      <title>Re: My Playbook cannot be find in Alerts dashboard</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/My-Playbook-cannot-be-find-in-Alerts-dashboard/m-p/479118#M82232</link>
      <description>&lt;P&gt;I just saw this is creating a report, not an alert.&lt;/P&gt;</description>
      <pubDate>Wed, 22 Apr 2020 14:05:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/My-Playbook-cannot-be-find-in-Alerts-dashboard/m-p/479118#M82232</guid>
      <dc:creator>dadataz</dc:creator>
      <dc:date>2020-04-22T14:05:13Z</dc:date>
    </item>
  </channel>
</rss>

