Getting Data In

Splunk Assistance: How to create dashboards in Splunk?

SplunkDummy33
New Member

I am a student at Embry-Riddle Aeronautical University and i am attending MISA 532 Intgd Threat Warning Attk EIS. Our semester project is to create a dashboard using Splunk and adding panels each week. I am requesting assistance because i have been able to download Splunk successfully but have not been able to use Splunk to create dashboards. I am asking if someone can assist me in dashboard creations to be able to fulfill my class requirements. 

I am tasked to create three panels;

  • Access Denied/Privilege Escalation. how many failed attempts or PE were recorded.
  • Failed Log in. How many failed login attempts were detected by company users.
  • Social Media (OSINT). A dashboard showing OSINT information for employees. 
Labels (2)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @SplunkDummy33,

your question is just a little vague, because, before arriving to create a dashboard, you should have ingested the data in your Splunk and have the knowledge to create the search that's the base for each dashboard, then you should know the matter of your dashboard (in your case MISA 532 Intgd Threat Warning Attk EIS) that means to know the fields and values that you can find in your data.

In other words: dashboards is the last step in your activity!

About data ingestion, see some video about getting data in: https://www.google.com/search?q=splunk+getting+data+in&rlz=1C1VDKB_itIT1048IT1048&oq=splunk+getting+...

About search creation, see the Splunk Search Tutotial: https://docs.splunk.com/Documentation/SplunkCloud/latest/SearchTutorial/WelcometotheSearchTutorial

At least, about  dashboard (using Dashboard Studio), you can see at: https://www.google.com/search?q=splunk+dashboard+studio&sca_esv=559635945&rlz=1C1VDKB_itIT1048IT1048...

Ciao.

Giuseppe

Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...