This documentation does not apply to the most recent version of Splunk® Enterprise Security.
Click here for the latest version.

Create and manage data models in Splunk Enterprise Security
Create and manage data models using the Content Management page in Splunk Enterprise Security.
- Review the list of data models in Splunk Enterprise Security.
- Review the next scheduled time, acceleration status, and choose whether or not to accelerate a data model.
- Click a data model name to edit the data model.
Create a data model
- From the Enterprise Security menu bar, select Configure > Content Management.
- Click Create New Content and select Data Model.
- Create a data model following the instructions in the Splunk platform documentation.
- For Splunk Enterprise, see Create a data model in the Splunk Enterprise Knowledge Manager Manual.
- For Splunk Cloud, see Create a data model in the Splunk Cloud Knowledge Manager Manual.
Last modified on 31 August, 2018
PREVIOUS Managing content in Splunk Enterprise Security |
NEXT Create and manage key indicator searches in Splunk Enterprise Security |
This documentation applies to the following versions of Splunk® Enterprise Security: 5.0.0, 5.0.1, 5.1.0, 5.1.1
Feedback submitted, thanks!