Discover, share, and install apps and add-ons with the Splunk community on Splunkbase. Publish your own or add others to your Splunk platform instance.
Streamline your security operations with a SOAR system that integrates orchestration, playbook automation, and case management to enhance threat response.
Access and share apps and add-ons with the Splunk community on Splunkbase. Publish your own apps, or download and install others on your Splunk platform instance.
Exposure Analytics records associations between key fields: ip, mac, nt_host, and user_id. You can modify the association record aging to remove any association combinations that have not been discovered for a defined period of time.
In Exposure Analytics, select Configure and then All configurations.
In the Exposure analytics section, select Inventory management.
In the Association record aging section, select the settings icon in the table.
Enter a number of days for Last discovered over. This identifies records that have not been discovered or detected in your specified period of time.
Activate the aging period by turning on the toggle switch.
Select Update.
After you modify and activate the association record aging, the aging period logic runs once per day.