Skip to content

Latest commit

 

History

History
9 lines (7 loc) · 418 Bytes

List of Correlation Searches.md

File metadata and controls

9 lines (7 loc) · 418 Bytes

List of Correlation Searches


| rest /servicesNS/-/-/saved/searches splunk_server=local 
| where match('action.correlationsearch.enabled', "1|[Tt]|[Tt][Rr][Uu][Ee]")  
| rename eai:acl.app as app, title as csearch_name, action.correlationsearch.label as csearch_label, action.notable.param.security_domain as security_domain
| table csearch_name, csearch_label, app, security_domain, description,search