Splunk Enterprise Security

How do I configure MC to show me the Alerts & warnings I get on the Enterprise Security (ES)? Thanks a million.

SamHTexas
Builder

I have Monitoring Console in distributed mode on my Cluster Master. Need to learn how do I configure it to show Alerts & warnings I receive on my ES. I see small issues & warnings about the ES but like to see more. Thanks in advance. 

Labels (2)
Tags (1)
0 Karma

isoutamo
SplunkTrust
SplunkTrust
If I recall right you must add separate alert action to “register/send to” those alerts to MC also. Couldn’t remember the name now, but you probably found it from manual?
0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...