Splunk Enterprise Security

Splunk Enterprise Security: How to route data into app

ahmedragy922
Explorer

Hi,
I can't find any material for studying Splunk security essential app, is there any documentation or videos explaining that app?
How do you get the data into SSE app ???

Do I have to use CIM to change source type to common name that SSE will understand?

0 Karma
1 Solution

MuS
Legend

Hi ahmedragy922,

if you look here https://splunkbase.splunk.com/app/3435/#/details you can find all the information you are looking for in very detailed listings. It also includes a link to a video.

Hope this helps ...

cheers, MuS

View solution in original post

0 Karma

MuS
Legend

Hi ahmedragy922,

if you look here https://splunkbase.splunk.com/app/3435/#/details you can find all the information you are looking for in very detailed listings. It also includes a link to a video.

Hope this helps ...

cheers, MuS

0 Karma
Get Updates on the Splunk Community!

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer at Splunk .conf24 ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...

Share Your Ideas & Meet the Lantern team at .Conf! Plus All of This Month’s New ...

Splunk Lantern is Splunk’s customer success center that provides advice from Splunk experts on valuable data ...

Combine Multiline Logs into a Single Event with SOCK: a Step-by-Step Guide for ...

Combine multiline logs into a single event with SOCK - a step-by-step guide for newbies Olga Malita The ...