Splunk Enterprise Security

Where do I find already built in Dashboards in Splunk Enterprise & ES

SamHTexas
Builder

Where do I find already built in Dashboards in Splunk Enterprise & ES

Labels (1)
Tags (1)
0 Karma

splunkcol
Builder

What you should know about Splunk ES is that it is more focused on the correlation use cases that it already comes with by default.

These correlation cases are not active, you must activate them according to what you need since there are different types.

Now, if you want to see dashboards, you can see the ones that the tool brings

splunkcol_0-1615997443988.png

if you want to see the correlation events you must enter "Settings" "Content" "Use Case library" and from there you activate or deactivate the use cases that apply to your splunk implementation


splunkcol_2-1615998591679.png

 

 

0 Karma

lkutch_splunk
Splunk Employee
Splunk Employee
0 Karma

SamHTexas
Builder

Thank u for this very much. IT is talking about already built in dashboards in ES. Are there already built in dashboards in Splunk enterprise & where do I find them ( on which Splunk server). Thank u

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics GA in US-AWS!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...