| Subject | Author | Views | Posted | |
|---|---|---|---|---|
|
Right now I have an issue with duplicate notables. I want to make it so a notable will only re-gene...
| 619 | 10-25-2024 07:23 AM | ||
|
We have different lookup inputs into the Splunk ES asset list framework. Some values for assets cha...
| 558 | 10-21-2024 05:57 AM | ||
|
Greetings, I found some useful savedsearches under SA-AccessProtection / DA-ESS-AccessProtection, ...
| 1145 | 10-02-2024 07:53 AM | ||
|
I am using the following html for my alert action data entry screen. The tenant mulit-select does ...
| 566 | 09-23-2024 05:05 PM | ||
|
When running a search on the Incident Review dashboard where the search term is the <event_id> valu...
| 477 | 09-19-2024 02:03 AM | ||
|
Hi everyone! Is it possible to pass a parameter from search to the next "action|url" step? Like in...
| 541 | 09-17-2024 06:03 AM | ||
|
Salam guys I wrote the Correlation Search Query and added the Adaptive Response Actions (notable, ...
| 628 | 09-14-2024 11:08 AM | ||
|
I Have 60 Correlation Search in Content Management Some of my Correlation Search doesn't trigger ...
| 500 | 09-05-2024 12:33 AM | ||
|
I found a similar post that did not quite fit the bill of what I am trying to do. I want to be a...
| 560 | 09-02-2024 07:06 AM | ||
|
Hello community, I'm encountering an issue while working with custom content in Splunk Security Es...
| 929 | 07-17-2024 11:56 AM | ||
|
When using Pplunks security essentials : MITRE ATT&CK Framework we are lacking a significant ...
| 1109 | 06-28-2024 02:02 PM | ||
|
Hi All, The data checkpoint file for windows logs is taking up a lot of disk space (over 100 GB). ...
| 856 | 02-07-2024 11:57 AM | ||
|
Having issues with fetching investigations in incident review. Investigation is added for the al...
| 1137 | 02-01-2024 09:57 AM | ||
|
"El servidor que aloja Splunk Enterprise no tiene acceso a Internet sin restricciones por razones d...
| 1238 | 01-25-2024 03:56 PM | ||
|
Hello everyone In the Investigation view, in the Workbench section, I want to add a different arti...
| 652 | 01-17-2024 05:53 PM | ||
|
Hello, I'd like to know how to locate the correlation searches that XSOAR is monitoring, rather th...
| 838 | 01-09-2024 03:30 AM | ||
|
Dear All, To create the below table for the Notable dashboard in ES, can you please advise. Thank...
| 670 | 01-07-2024 08:17 AM | ||
|
Where is the data from the Splunk Enterprise Security (ES) Investigation Panel stored? In the prev...
| 1430 | 12-18-2023 10:08 AM | ||
|
Hi, I'm trying to setup a way to automatically assign notables to the analysts, and evenly. The "d...
| 758 | 11-27-2023 11:58 PM | ||
|
For new RBA users, here are some frequently asked questions to help you better get started with ...
| 29739 | 11-09-2023 02:28 PM |