Splunk Enterprise Security

Threat Artifacts setting

WildHuckleberry
Path Finder

Hello Splunkers, 

 

is there any way to change that red box name as a test?? 

 

스크린샷 2022-01-27 오후 5.01.43.png

 

 

Thank you in advance 🙂

Labels (2)
0 Karma
1 Solution

isoutamo
SplunkTrust
SplunkTrust

Hi

just add in this panel's SPL next part

....
| eval threat_collection = if(threat_collection == "ip_intel", "Foo Bar", threat_collection)
| ....

r. Ismo 

View solution in original post

isoutamo
SplunkTrust
SplunkTrust

Hi

just add in this panel's SPL next part

....
| eval threat_collection = if(threat_collection == "ip_intel", "Foo Bar", threat_collection)
| ....

r. Ismo 

Get Updates on the Splunk Community!

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer at Splunk .conf24 ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...

Share Your Ideas & Meet the Lantern team at .Conf! Plus All of This Month’s New ...

Splunk Lantern is Splunk’s customer success center that provides advice from Splunk experts on valuable data ...

Combine Multiline Logs into a Single Event with SOCK: a Step-by-Step Guide for ...

Combine multiline logs into a single event with SOCK - a step-by-step guide for newbies Olga Malita The ...