Splunk Enterprise Security

Help me with the ES Sandbox

emborden
New Member

I have tried to launch the sandbox twice with 2 Splunk users with the same negative results.  I get into the console but when I goto search and search * - there is not event data.  When I try to goto Security Posture dashboard = I get unable to load results and other errors.  When I goto Incident Review Dashboard - I get Errors loading some filters = selected views is RED and No options.  When I goto the Investigations dashboard - Unkown Error: Failed to fetch from KV Store.

I hope there is an easy fix for this issue.  My email address that I am using for this trial is (Removed)

Thank you in advance,

Eddie Borden

Labels (2)
0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @emborden 

Please can you confirm which sandbox server you are using? Is this a <something>.splunk.show address?

The people who manage these instances dont usually respond here, if you have a support entitlement for another instance you might be able to raise a support ticket and let them know the details, alternatively you might be able to call support using your local support contact number from https://www.splunk.com/en_us/customer-success/support-programs.html?locale=en_us

🌟 Did this answer help you? If so, please consider:

  • Adding karma to show it was useful
  • Marking it as the solution if it resolved your issue
  • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...