Getting Data In

How to get data into the splunk OT add on security posture dashboard?

munna
Explorer

hello,

I had the splunk enterprise with the ES and OT add-ons. I accelerated the data model of the OT_Asset DM and created the  correlation search in the ES(Enterprise Security) add-on through config>content management>new content>new correlation search.But in splunk OT add-on the dash boards are not showing the values they showing only 0's.how can I get my data into splunk OT dashboards, is there any other ways to do that. If have please let me know.

 

0 Karma

paolos
Loves-to-Learn Everything

Hello ,

what type of data are you trying to ingest?    
From the dashboard , the asset need the ot_asset tag to be searchable

 

Paolo

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

A Four-Part Event Series: Full Stack Observability For the AI Era

As AI reshapes applications, infrastructure, and the way teams operate, the traditional boundaries of ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...