Splunk Enterprise Security

How do I add static Tag options to the ES Incident Review Dashboard?

malvidin
Communicator

In Tag section of the ES Incident Review Page, is it possible to have specific tags selectable, rather than having to type them in?

Or is it better to modify the page to add another multiselect field to filter by specific tags, or add a multiselect field to add specific search terms?

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Is there an add-on for the Cisco Meraki devices?

We have many Cisco Meraki devices sending data via syslog to Splunk. Is there an add-on for ...

Should our Deployment Servers have the Search Head server role on them?

all of our stuff is on premcurrently our dedicated Deployment Servers also have the Search Head role on them, ...

Why am I unable to create dropdown static option that is "All" static options ...

Hi, I am trying to get a static option that is "All" the individual static options combined.  The mCode ...