Monitor activities in Splunk Mission Control
You can monitor activities in Splunk Mission Control using the Mission Control Operation dashboard.
Review Splunk Mission Control activities
You can review Splunk Mission Control SOC operations, including incident response metrics and other statistics for incidents in your environment using the Mission Control Operation dashboard.
- Select Apps then Search & Reporting.
- Select Dashboards, then select Mission Control Operation from the list.
- Review the various metrics present.
- (Optional) Select the search icon to open a metric in search.
- (Optional) Export the entire dashboard by selecting Export, or hover over a certain metric and select the export icon to export only that specific metric.
If you have the sc_admin or admin role, you can also search audit logs and audit certain actions using the _audit
index. See Search audit data in Splunk Mission Control.
Modify the Mission Control Operation dashboard
You can modify the layout and content of the Mission Control Operation dashboard.
- While viewing the dashboard, select Edit.
- Use the editing pane and the canvas to modify settings for each object on the dashboard.
- Select and drag visualizations and objects on the dashboard to modify the dashboard layout.
- Select Source to edit the JSON format.
- (Optional) Select + Add Panel or + Add Input to add additional metrics or input to the dashboard.
- Select Save.
Modify app level permissions for Splunk Mission Control | Splunk Mission Control scenario library |
This documentation applies to the following versions of Splunk® Mission Control: Current
Feedback submitted, thanks!