Splunk Enterprise

Query

NOORULAINE
Loves-to-Learn Lots

Hi
i am trying to build a dashboard and I require a query to execute below some searches below: 

1. REPORT FALSE POSITIVE PER TOTAL

 2. REPORT MONTHLY SPLUNK ALERT HIGH - MEDIUM - LOW

Can anyone help me in building the same?

Labels (1)
Tags (2)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Start with a search to return the events you are interested in. Since you didn't provide any details of what events you have, nor what you want in your dashboard, I am not sure how much more help can be given.

0 Karma
Get Updates on the Splunk Community!

Splunk Classroom Chronicles: Training Tales and Testimonials (Episode 4)

Welcome back to Splunk Classroom Chronicles, our ongoing series where we shine a light on what really happens ...

From GPU to Application: Monitoring Cisco AI Infrastructure with Splunk Observability ...

AI workloads are different. They demand specialized infrastructure—powerful GPUs, enterprise-grade networking, ...

Application management with Targeted Application Install for Victoria Experience

  Experience a new era of flexibility in managing your Splunk Cloud Platform apps! With Targeted Application ...