List of questions
Related questions
Question 15 - SPLK-3001 discussion
How is it possible to navigate to the list of currently-enabled ES correlation searches?
A.
Configure -> Correlation Searches -> Select Status “Enabled”
B.
Settings -> Searches, Reports, and Alerts -> Filter by Name of “Correlation”
C.
Configure -> Content Management -> Select Type “Correlation” and Status “Enabled”
D.
Settings -> Searches, Reports, and Alerts -> Select App of “SplunkEnterpriseSecuritySuite” and filter by “- Rule”
Your answer:
0 comments
Sorted by
Leave a comment first