Files
splunk-security_content/deployments/16_splunk_security_analytics_for_aws.yml

16 lines
556 B
YAML

name: Enterprise Security config for Splunk Security Analytics for AWS customers
id: bc91a8cd-35e7-4bb2-6140-e756cc46f211
date: '2021-01-20'
author: Bhavin Patel
description: This configuration file applies to all correlation searches that are
used in the Splunk Security Analytics for AWS product. NOTE - Splunk Security Analytics
for AWS searches do not need notable configurations
scheduling:
cron_schedule: 0 * * * *
earliest_time: -70m@m
latest_time: -10m@m
schedule_window: auto
tags:
product:
- Splunk Security Analytics for AWS