Splunk Enterprise Security

MLTK: Does it support multi-output classification?

danman81
Engager

Does the MLTK support multi-output classification, i.e., more than 1 predicted field?

Thank you.

0 Karma

ivanreis
Builder

I suggest for you to visit this link
-> https://www.splunk.com/blog/2019/08/14/what-s-new-in-the-splunk-machine-learning-toolkit-4-4.html
and make this question at "Join the Discussion" to see if Splunk have plans to add such functionality

0 Karma

ivanreis
Builder

I am not playing too much with MLTK, so If I understood your question properly, the new version 4.4 of MKTL can work with multiple predicted fields,
Please read this doc -> https://www.splunk.com/blog/2019/08/14/what-s-new-in-the-splunk-machine-learning-toolkit-4-4.html
suggestion for you to deploy the MLTK v4.4 in a sandbox to play around and validate if you are able to use this functionality.

danman81
Engager

I'm sorry, but this does not answer my question. I am looking for categorical prediction, not numerical prediction. It looks like multi-output classification is not yet supported by the MLTK out-of-the-box.

0 Karma

ivanreis
Builder

I really appreciated your feedback, thus I am not aware if this functionality will be supported in the future. thanks

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...