All Apps and Add-ons

Splunk App for Windows Infrastructure Searches

tmarlette
Motivator

So i'm looking at the Splunk app for Windows infrastrucutre and data is populating great. Now I'm looking to set up some alerts for the results that I see, and I'm having trouble finding the actual query used to populate these dashboards.

There is no 'Edit Source' selection so that I can look through the XML, though when I dig through the HTML on the back end I get lost in java scripts and I see no actual query.

Is there a way to find these queries?

I'm looking at 'Group Changes' Dashboard within the App for Windows infrastructure.

0 Karma
1 Solution

tmarlette
Motivator

There's no good way to find these without following the code.

View solution in original post

0 Karma

tmarlette
Motivator

There's no good way to find these without following the code.

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...