Add a predefined source

Exposure Analytics comes with a number of configured sources. To add one of these predefined sources, complete the following steps:

  1. In Exposure Analytics, select Configure then All configurations.
  2. In the Exposure analytics section, select Entity discovery sources.

  3. Select Add.
  4. From the drop-down list, select Add predefined source.
  5. (Optional) Turn on or turn off the toggle switch for Show only discovered sources. When turned on, Exposure Analytics filters its list of predefined sources to only the ones available in your environment. This option is on by default.
  6. From the list of predefined sources, choose the source you want to add. You can search for a source by name or by source type. After you select a source, you can see the following information:
    • Type: Whether the source updates in batches or in real-time.
    • Method: How the data gets pulled in, such as by API or by forwarder.
    • Add-on: Whether or not the associated add-on is installed. The associated add-on must be installed in order to use the source. If there is an ( x ) icon for the Installed field, select the link to the add-on to open Splunkbase.
    • Notes: A description of the source.
    • Processing: The types of data processing that Exposure Analytics uses for the source.
  7. (Optional) Edit the nickname. After you select a source, Exposure Analytics populates the nickname automatically. You can modify it before adding the source.
  8. For streaming sources, update the Sourcetype if it's not correct. After you select a source, Exposure Analytics populates the sourcetype automatically. A streaming source might add knowledge objects tied to this sourcetype, so make sure the sourcetype matches the one you're using.
  9. Select Add source.