I'd like to copy Splunk configurations such as dashboards, searches, etc. on a Splunk server to another one.
Is it possible? If yes, which data Should I copy?
Here are the screenshots: In incident review setting, I have already labeled signature: Then in Correlation Search content setting, also I have setting the search query which could result in f...
When we create a notable, we want to use certain fields such as source IP and destination IP, When I create the rule and add these fields as $src$ and $dest$ in enterprise security 7.0.0 i...
Hello, I am trying to create some dashboards in ES and some other apps. For convenience I would like to be able to access them from app drop-down menu, but I can`t find way to do so....
...hat sort of data should I start getting in? What dashboard should I build? They've started...but need that ah-ha example to see how this tool will fit into their existing environment and w...
I have a dashboard that I have to do a lot of refreshing on. This is causing a lot of jobs to happen on my SPunk install. The first set of jobs run but they are kept by Splunk for 5 minutes (I...
We are using OpenShift 4.11.27 and now looking for OpenShift Log Forwarding to Splunk.
Did below changes at OpenShift end to configure splunk:
Installed cluster-logging and e...
Hi all, I have a panel with 4 columns and I configurethe panel settings in "htmlPanel1A". <panel id="htmlPanel1A"> Due to different values in each columns, I sometimes f...