Getting Data In

How to get data into the splunk OT add on security posture dashboard?

munna
Explorer

hello,

I had the splunk enterprise with the ES and OT add-ons. I accelerated the data model of the OT_Asset DM and created the  correlation search in the ES(Enterprise Security) add-on through config>content management>new content>new correlation search.But in splunk OT add-on the dash boards are not showing the values they showing only 0's.how can I get my data into splunk OT dashboards, is there any other ways to do that. If have please let me know.

 

0 Karma

paolos
Loves-to-Learn Everything

Hello ,

what type of data are you trying to ingest?    
From the dashboard , the asset need the ot_asset tag to be searchable

 

Paolo

0 Karma
Get Updates on the Splunk Community!

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...

[Live Demo] Watch SOC transformation in action with the reimagined Splunk Enterprise ...

Overwhelmed SOC? Splunk ES Has Your Back Tool sprawl, alert fatigue, and endless context switching are making ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...