Knowledge Management

What are some best practices for knowledge object relationships mapping?

genesiusj
Builder

Hello,
In MS Access there is a Relationships Manager "tool" to keep track of how the tables, forms, searches, etc. relate to each other in a database app. Is the same available in Splunk? If not, what has been your own Best Practices, besides using a spreadsheet, to keep track of what reports, dashboards, lookup tables, and definitions, etc. are interrelated to each other?
Thanks in advance and God bless,
Genesius

0 Karma

sloshburch
Splunk Employee
Splunk Employee

Such a thing sounds like a solution to a problem. Would you elaborate on your problem or challenge? It would be interesting to hear what gaps exist and how such a UI could help you.

0 Karma

DavidHourani
Super Champion

Hi @genesiusj.

No, there is no relationships manager tool. You can get a listing of all dashboards, reports, and other knowledge objects using REST commands. So it would be pretty easy to build dashboards and get this kind of info.

Relationships becomes a problem easily though because there is no way to link and find where a macro is being used or on which dashboard a report is used.

0 Karma

genesiusj
Builder

Thanks for the answer, @DavidHourani
Perhaps a nice-to-have Splunk can add to version 8.
God bless,
Genesius

0 Karma

DavidHourani
Super Champion

Yeah, could be a great ad on.

It's actually possible to build it if you're indexing your configuration files but it's not easy to make as you'll have to manually put trackers for all newly added knowledge objects.

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...