All Apps and Add-ons

Sysmon App For Splunk 2.0.0 - searches for dashboard panels

Path Finder

I've noticed that some of the dashboard panels are using EventCode=<Event ID number> while others are using EventDescription="<Event description>". For consistency, I would like to propose that all be changed to use:
(EventCode=<Event ID number> OR EventDescription="<Event Description>")

Tags (1)
0 Karma