Splunk Enterprise Security

Integration of "Investigation" ES functionality into a custom splunk app

mjones414
Contributor

Hello,

I am wanting to write an app for Splunk ES that can leverage the ability to integrate the investigation toolbar on the bottom and manage investigations within the context of a completely different app.  Is there a particular app template I should reference in order to do this?

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Splunk Search APIを使えば調査過程が残せます

   このゲストブログは、JCOM株式会社の情報セキュリティ本部・専任部長である渡辺慎太郎氏によって執筆されました。 Note: This article is published in both Japanese ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...