Stackinsight community discussion - products, reviews, AI and more
Splunk ES vs Devo for high-volume log ingestion costs
Last post by cost_cutter_ray, 3 months ago
Complete newbie here - where do I start with dashboard creation in ES?
Last post by code_weaver_max, 3 months ago
Am I the only one who just uses ES for dashboards and does detection elsewhere?
Last post by datadog, 3 months ago
Just built a custom risk-based alerting workflow. My false positives dropped 60%.
Last post by LauraR, 3 months ago
ELI5: The difference between a notable event and a correlation search in ES.
Last post by crm_pragmatist, 3 months ago
Thoughts on the new Adaptive Response Framework? Is it actually useful?
Last post by benchmark_hunter, 3 months ago
Anyone else's ES Notables taking 5+ minutes to populate after detection?
Last post by JulieP, 3 months ago
How do I tune ES to stop alert fatigue with low-fidelity signals?
Last post by Integration Ian, 3 months ago
Results after tuning: Reduced our ES daily alert volume from 200 to under 20.
Last post by James R., 3 months ago
ELI5: How Splunk ES pricing works for a 500GB/day security-only deployment
Last post by coffeegoblin, 3 months ago