Splunk Enterprise Security

Does splunk have any predefined or pre-existing or canned Event Sequences already built?

Splunk_Comm_1
New Member

Does splunk have any predefined or pre-existing or canned Event Sequences already built - and essentially ready to be used - possibly with some minor tweaks

 

Labels (1)
0 Karma

meetmshah
Contributor

Hello @Splunk_Comm_1, No there is no OOTB Sequence Template available in ES. You would need to create one yourself.

Blog for reference - https://www.splunk.com/en_us/blog/security/stitching-notables-together-with-event-sequencing.html

 

Please accept the solution and hit Karma, if this helps!

0 Karma
Get Updates on the Splunk Community!

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...

Introducing the 2024 Splunk MVPs!

We are excited to announce the 2024 cohort of the Splunk MVP program. Splunk MVPs are passionate members of ...