Dashboards & Visualizations

Fireeye dashboard error "eventtype wineventlog-dns' does not exit/disabled

rapture005
New Member

Hello,

Running Splunk 6.6.0 and getting the following error on the FireEye app 3.1.1 dashboard "Eventtype 'wineventlog-dns' does not exist or is disabled. How do I fix this issue? Sorry we are new to Splunk.

Thank you for any help!

Tags (1)
0 Karma

Riasudin
New Member

just go to settings --eventtypes and create eventtype with the log type , in case my case i created as below and issue resolved :

keep both the name & search string as as wineventlog-dns
wineventlog-dns

make permission as global

status as enable

let me know if you still have any queries please:)

0 Karma

adonio
Ultra Champion
0 Karma
Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...