From the course: Integrating Splunk with Microsoft Purview

Unlock the full course today

Join today to access over 24,900 courses taught by industry experts.

Challenge: Create a dashboard

Challenge: Create a dashboard

(upbeat music) - [Instructor] Let's do a challenge. In this challenge, we'll create a dashboard of the results generated from the Microsoft Purview audit log search result on Splunk. Start by opening the exercise folder, and you should find this query. You can copy and paste this query on the search field in your Splunk enterprise for parsing, searching, and visualization. Next, extract the field with date_minute report. Filter your search query results with a fail asterisk to generate only failed activity results. Then finally, extract the date_minute report and save the visualized report in the dashboard. At the end of this challenge, you should be able to understand the simple steps in creating a dashboard from a search result.

Contents