Build Correlation Searches with Splunk Enterprise Security Hands On Workshop 1.0.2
24 March 2020
-Added an additional correlation search to the Analytic Story
-Fixed an issue where the Analytic Story would generate an error when attempting to edit from the UI
The enclosed correlation searches should work with any version of Enterprise Security but the Analytic Story function was released as part of ES 5.2 so supported Splunk versions are identified as those that support ES 5.2 and newer.
Splunk AppInspect evaluates Splunk apps against a set of Splunk-defined criteria to assess the validity and security of an app package and components.
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps and add-ons from Splunk, our partners and our community. Find an app or add-on for most any data source and user need, or simply create your own with help from our developer portal.