Splunk® Security Content

How to Use Splunk Security Content

Acrobat logo Download manual as PDF

Acrobat logo Download topic as PDF

Install and set up the Splunk Machine Learning Toolkit

The Splunk Machine Learning Toolkit (MLTK) enables users to create, validate, manage, and operationalize machine-learning models through a guided user interface. Many of the searches provided in Splunk Security Content use MLTK to create models and enhance performance.

The current version of the Splunk Machine Learning Toolkit is 4.2.0 and requires Splunk Enterprise 6.6 or later or Splunk Cloud and Python for Scientific Computing add-on version 1.3 or 1.4.

To get started, download MLTK from Splunkbase and then visit this page for installation instructions.

Last modified on 21 January, 2021
How to use Splunk Security Content
Configure Splunk Enterprise Security to use the Machine Learning Toolkit

This documentation applies to the following versions of Splunk® Security Content: 3.22.0, 3.23.0, 3.24.0, 3.25.0, 3.26.0, 3.27.0, 3.28.0, 3.29.0, 3.30.0, 3.31.0, 3.32.0, 3.33.0, 3.34.0, 3.35.0, 3.36.0, 3.37.0, 3.38.0, 3.39.0

Was this documentation topic helpful?

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters