Splunk Enterprise Security

Where do I find already built in Dashboards in Splunk Enterprise & ES

SamHTexas
Builder

Where do I find already built in Dashboards in Splunk Enterprise & ES

Labels (1)
Tags (1)
0 Karma

splunkcol
Builder

What you should know about Splunk ES is that it is more focused on the correlation use cases that it already comes with by default.

These correlation cases are not active, you must activate them according to what you need since there are different types.

Now, if you want to see dashboards, you can see the ones that the tool brings

splunkcol_0-1615997443988.png

if you want to see the correlation events you must enter "Settings" "Content" "Use Case library" and from there you activate or deactivate the use cases that apply to your splunk implementation


splunkcol_2-1615998591679.png

 

 

0 Karma

lkutch_splunk
Splunk Employee
Splunk Employee
0 Karma

SamHTexas
Builder

Thank u for this very much. IT is talking about already built in dashboards in ES. Are there already built in dashboards in Splunk enterprise & where do I find them ( on which Splunk server). Thank u

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...