Let me re-phrase my question. I need to know when a log source stops sending logs to the SIEM (within an hour time phase). I felt if I had a dashboard/visualization I could quickly glance at it and notice if anything was awry. OR get some type of email or text alert would suffice. - Any ideas from the Splunk Community?
... View more