Skip to content

Splunk Search that shows details about the investigations (their notable events and response time)

License

Notifications You must be signed in to change notification settings

qaistem1/SplunkInvestigationsReport

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

9 Commits
 
 
 
 
 
 

Repository files navigation

Splunk Investigations Report

The search joins the Investigations rest search with the notables macro search in order to get information like: investigation name, colloborators, creation date, closure time, response time, investigation notable events, investigation notable events urgency etc.

NOTE: the two searches has been matched using the "title" field in the investigations search and the "notable_xref_id" field in the notables search.

About

Splunk Search that shows details about the investigations (their notable events and response time)

Topics

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published