Security

Security Domain

tuts
Path Finder

Why is it that every time I set the event under (Security Domain=NETWORK) from the Content Management page, the value (Security Domain=Threat) appears on the Incident Review page even though I set it as NETWORK?

2024-07-08 10_59_21-Incident Review _ Splunk and 31 more pages - Profile 1 - Microsoft​ Edge.jpg

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...