Please check the $SPLUNK_HOME/etc/apps directory to see if any apps bundled with Splunk Enterprise are installed, such as DA-ESS*, SA-*, etc. If they are not present, you can install the specified apps from the $SPLUNK_HOME/etc/apps/SplunkEnterpriseSecuritySuite/install/ directory. After installation, restart the Splunk service.
... View more