Splunk Enterprise Security

Splunk Enterprise Security: Does Adaptive Response support the use of dynamic input controls?

kchamplin_splun
Splunk Employee
Splunk Employee

Does AR support the use of dynamic input controls? Currently Splunk 6.5 supports search-powered controls on mod alerts - are these dynamic input controls supported within AR actions for Splunk Enterprise Security?

sdelicori_splun
Splunk Employee
Splunk Employee

Not as of ES 4.5. Splunk Enterprise Security generally avoids depending on new features in a Splunk Enterprise release in the same quarter. This feature is planned for a future release.

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...