Inspect asset history

Inspect the attribution history for assets on your network using the network asset detection history timeline. To check the detection history for an asset, complete the following steps:

  1. In Exposure Analytics, select Investigation from the main menu navigation bar, and then select Asset record history.
  2. Using the drop-down list, select a time range. See Select time ranges to apply to your search in the Splunk Enterprise Search Manual.
  3. Enter a host name.
  4. Using the drop-down list, select a span of 1 day, 1 week, or 1 month.
  5. Select Submit.

After you submit your selected time range and host, you can find a table where each row provides the latest asset record at that particular time span along with a count of detections. This table is particularly useful in showing asset record changes over time.