Hacker News new | ask | show | jobs
by samueladam 2070 days ago
Splunk 8 has a dark theme.
1 comments

I remembered Splunk being a simple log parser. I didn’t remember it as a dashboard like this. It’s been many years since I looked at it though. Time to give it another look.
I build SOCs where Splunk can be the SIEM and it is being very nice to work with.

It integrates an editor where you can convert query results to such visualizations. You could also integrate your custom viz made with JS libs (D3).

Entreprise Security is a Splunk paid app that provides a nice environment for SOC analysts.

Yes,you should give it a try, maybe through a docker image that will get you going quickly.