Splunk Enterprise Security

Splunk Enterprise Security: Does Adaptive Response support the use of dynamic input controls?

Splunk Employee
Splunk Employee

Does AR support the use of dynamic input controls? Currently Splunk 6.5 supports search-powered controls on mod alerts - are these dynamic input controls supported within AR actions for Splunk Enterprise Security?

Splunk Employee
Splunk Employee

Not as of ES 4.5. Splunk Enterprise Security generally avoids depending on new features in a Splunk Enterprise release in the same quarter. This feature is planned for a future release.

0 Karma
Don’t Miss Global Splunk
User Groups Week!

Free LIVE events worldwide 2/8-2/12
Connect, learn, and collect rad prizes
and swag!