Splunk Enterprise Security

Where do I find already built in Dashboards in Splunk Enterprise & ES

SamHTexas
Builder

Where do I find already built in Dashboards in Splunk Enterprise & ES

Labels (1)
Tags (1)
0 Karma

splunkcol
Builder

What you should know about Splunk ES is that it is more focused on the correlation use cases that it already comes with by default.

These correlation cases are not active, you must activate them according to what you need since there are different types.

Now, if you want to see dashboards, you can see the ones that the tool brings

splunkcol_0-1615997443988.png

if you want to see the correlation events you must enter "Settings" "Content" "Use Case library" and from there you activate or deactivate the use cases that apply to your splunk implementation


splunkcol_2-1615998591679.png

 

 

0 Karma

lkutch_splunk
Splunk Employee
Splunk Employee
0 Karma

SamHTexas
Builder

Thank u for this very much. IT is talking about already built in dashboards in ES. Are there already built in dashboards in Splunk enterprise & where do I find them ( on which Splunk server). Thank u

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Detecting Remote Code Executions With the Splunk Threat Research Team

WATCH NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If exploited, ...

Enter the Splunk Community Dashboard Challenge for Your Chance to Win!

The Splunk Community Dashboard Challenge is underway! This is your chance to showcase your skills in creating ...

.conf24 | Session Scheduler is Live!!

.conf24 is happening June 11 - 14 in Las Vegas, and we are thrilled to announce that the conference catalog ...