Splunk Enterprise Security

Is there any documentation on Splunk Enterprise Security that we can use?

brian1_tate
Path Finder

This is nuts, I downloaded the ES 4.1.1 Overview and it's two pages basically telling me how to login. No kidding.
HP has too much with ArcSight (which is better than nothing) and this is the overview provided by Splunk to Enterprise clients?

Seriously?

Can someone please confirm this or provide additional documentation as to what we are looking at with some of these because we had professional services do an install into this and while they did a good job, there is minimal detail when it comes to random questions within. I don't want to open cases when they aren't needed and I will have plenty of users who won't learn Splunk language to use this product because that's not what they do.

Thx

0 Karma
1 Solution

smoir_splunk
Splunk Employee
Splunk Employee

Hi Brian!

All the documentation is here: http://docs.splunk.com/Documentation/ES

Featuring a user manual: http://docs.splunk.com/Documentation/ES/4.1.1/User/Overview
And an install manual: http://docs.splunk.com/Documentation/ES/4.1.1/Install/Overview
And even some scenarios and use cases about how to use it: http://docs.splunk.com/Documentation/ES/4.1.1/Usecases/Overview

If you want to download a hard copy or offline copy all of the documentation for ES, click "download manual as PDF" for each manual that you want.
alt text

Thanks,
Sarah

View solution in original post

smoir_splunk
Splunk Employee
Splunk Employee

Hi Brian!

All the documentation is here: http://docs.splunk.com/Documentation/ES

Featuring a user manual: http://docs.splunk.com/Documentation/ES/4.1.1/User/Overview
And an install manual: http://docs.splunk.com/Documentation/ES/4.1.1/Install/Overview
And even some scenarios and use cases about how to use it: http://docs.splunk.com/Documentation/ES/4.1.1/Usecases/Overview

If you want to download a hard copy or offline copy all of the documentation for ES, click "download manual as PDF" for each manual that you want.
alt text

Thanks,
Sarah

ppablo
Retired

Hi @briant1_tate

If you look at the bottom of the details tab on the Splunk Enterprise Security page on Splunkbase, it has the link to the documentation:
https://splunkbase.splunk.com/app/263/#/details

Splunk Enterprise Security 4.1.1 Documentation:
http://docs.splunk.com/Documentation/ES/4.1.1

First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.


Introducing Unified TDIR with the New Enterprise Security 8.2

Read the blog
Get Updates on the Splunk Community!

OpenTelemetry for Legacy Apps? Yes, You Can!

This article is a follow-up to my previous article posted on the OpenTelemetry Blog, "Your Critical Legacy App ...

UCC Framework: Discover Developer Toolkit for Building Technology Add-ons

The Next-Gen Toolkit for Splunk Technology Add-on Development The Universal Configuration Console (UCC) ...

.conf25 Community Recap

Hello Splunkers, And just like that, .conf25 is in the books! What an incredible few days — full of learning, ...