Archive

Splunk Threat_intel lookup not loading up into threat Activity dashboard

Path Finder

What are some troubleshooting steps I can take, if i don't see any of my custom lookup load in Splunk Threat Activity dashboard. For example I created a lookup up stored in threatintel directory. The lookup file shows in Splunk Audit but it doesn't seem to load in ThreatActivity dashboard? Any suggestion will be helpful. Thanks.

0 Karma