<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Predefined use cases in Splunk Enterprise Security</title>
    <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/Predefined-use-cases/m-p/268994#M2098</link>
    <description>&lt;P&gt;As Martin says, if you look at Splunk Enterprise Security, you will find a lot of what you are looking for. The &lt;EM&gt;&lt;A href="http://docs.splunk.com/Documentation/ES/latest/User/Overview"&gt;User Manual&lt;/A&gt;&lt;/EM&gt; contains information about all the dashboards and key indicators.&lt;/P&gt;</description>
    <pubDate>Sat, 10 Oct 2015 16:53:41 GMT</pubDate>
    <dc:creator>ChrisG</dc:creator>
    <dc:date>2015-10-10T16:53:41Z</dc:date>
    <item>
      <title>Predefined use cases</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/Predefined-use-cases/m-p/268992#M2096</link>
      <description>&lt;P&gt;Dear Team,&lt;/P&gt;

&lt;P&gt;We are planning to use splunk for monitoring (security) purpose as an SIEM service. What i wanted to ask here is "is their any way to find out for the list of already available (predefined) rules, reports and dashboards", like other SIEM. &lt;/P&gt;

&lt;P&gt;I heard from many people the use-cases comes as default when we install the log source/device specific apps. For ex: Palo Alto, Symantec DLP, Symantec AV etc.&lt;/P&gt;

&lt;P&gt;But how do we differentiate which one comes pre-defined ?&lt;/P&gt;

&lt;P&gt;Best Regards&lt;BR /&gt;
Praveen Kamble&lt;/P&gt;</description>
      <pubDate>Sat, 10 Oct 2015 11:20:01 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/Predefined-use-cases/m-p/268992#M2096</guid>
      <dc:creator>praveen_kamble</dc:creator>
      <dc:date>2015-10-10T11:20:01Z</dc:date>
    </item>
    <item>
      <title>Re: Predefined use cases</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/Predefined-use-cases/m-p/268993#M2097</link>
      <description>&lt;P&gt;You'll want to take a look at Splunk Enterprise Security: &lt;A href="http://www.splunk.com/en_us/products/premium-solutions/splunk-enterprise-security.html"&gt;http://www.splunk.com/en_us/products/premium-solutions/splunk-enterprise-security.html&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Comes with lots of predefined rules, reports, and dashboards.&lt;/P&gt;</description>
      <pubDate>Sat, 10 Oct 2015 11:48:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/Predefined-use-cases/m-p/268993#M2097</guid>
      <dc:creator>martin_mueller</dc:creator>
      <dc:date>2015-10-10T11:48:54Z</dc:date>
    </item>
    <item>
      <title>Re: Predefined use cases</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/Predefined-use-cases/m-p/268994#M2098</link>
      <description>&lt;P&gt;As Martin says, if you look at Splunk Enterprise Security, you will find a lot of what you are looking for. The &lt;EM&gt;&lt;A href="http://docs.splunk.com/Documentation/ES/latest/User/Overview"&gt;User Manual&lt;/A&gt;&lt;/EM&gt; contains information about all the dashboards and key indicators.&lt;/P&gt;</description>
      <pubDate>Sat, 10 Oct 2015 16:53:41 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/Predefined-use-cases/m-p/268994#M2098</guid>
      <dc:creator>ChrisG</dc:creator>
      <dc:date>2015-10-10T16:53:41Z</dc:date>
    </item>
  </channel>
</rss>

