CB Defense: Observed Alerts in Splunk show as Monitored
search cancel

CB Defense: Observed Alerts in Splunk show as Monitored

book

Article ID: 290510

calendar_today

Updated On:

Products

Carbon Black Cloud Endpoint Standard (formerly Cb Defense)

Issue/Introduction

CB Defense Observed Alerts in Splunk will report as [Severity: Monitored]

Environment

  • CB Defense Web Console: All Versions
  • CB Defense Add-On for Splunk: Version 2.0.2
  • CB Defense App for Splunk: Version 1.1.5

Cause

The cause of this issue is currently under investigation

Resolution

A future product enhancement will modify the severity of the Alerts reported to Splunk from Monitored to Observed