CB Defense: Observed Alerts in Splunk show as Monitored
book
Article ID: 290510
calendar_today
Updated On:
Products
Carbon Black Cloud Endpoint Standard (formerly Cb Defense)
Issue/Introduction
CB Defense Observed Alerts in Splunk will report as [Severity: Monitored]
Environment
- CB Defense Web Console: All Versions
- CB Defense Add-On for Splunk: Version 2.0.2
- CB Defense App for Splunk: Version 1.1.5
Cause
The cause of this issue is currently under investigation
Resolution
A future product enhancement will modify the severity of the Alerts reported to Splunk from Monitored to Observed
Feedback
thumb_up
Yes
thumb_down
No