We are using Splunk Enterprise SIEM tool. we want to check all the source type which is configured for all alert/dashboard/report . As we have searched and tried with below query but it is not showing expected result which we want.
index="*" | stats count by source type
We want to check all source type which is configured under the all reports or all dashboards or all alerts.
if you can give me 3 different query for this then it is also fine we are not required all this in one query.