Splunk Enterprise Security

ES: incident Review is not showing as expected

neelamsantosh
Path Finder

Our incident Review board has different view and not functioning as expected due to which we are unable to filter from the dropdown list

Chrome: up to date (Version 57.0.2987.133 (64-bit))
Splunk Enterprise : 6.5.2
Splunk ES: 4.1
alt text

0 Karma

neelamsantosh
Path Finder

I believe this is known issue SOLNESS-10915. Enterprise Security 4.1 is
not compatible with version 6.5.x of Splunk. It is recommended to upgrade
your Enterprise Security as the workaround for this issue.

http://docs.splunk.com/Documentation/ES/4.1.1/RN/KnownIssues

0 Karma

hardikJsheth
Motivator

I agree with @smoir.

In case you are upgrading from earlier version of ES try to reload the IR page after clearing cache of your browser.

0 Karma

smoir_splunk
Splunk Employee
Splunk Employee

Hello @neelamsantosh,

Make sure you are using a compatible version of Splunk Enterprise with Splunk Enterprise Security.

Check this table for your version of Enterprise Security: http://docs.splunk.com/Documentation/ES/4.6.0/Install/DeploymentPlanning#Splunk_Enterprise_system_re...

Thanks,
Sarah

0 Karma
Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...