Skip to content

Install and Configuration Steps for RMF

Where to Install Compliance Essentials

The Application should be installed on the Search Head, either through the UI via “Manage Apps” or by extracting the archive into /opt/splunk/etc/apps folder.

Fresh Install and Setup Steps

Download Compliance Essentials for Splunk

  1. Install App Dependencies:

  2. Select Framework(s): Navigating to the app after a fresh install will direct you to the App Initial Setup Page. Once a framework or selection of frameworks are selected, a prompt will appear to navigate you to the Domain Overview Page.

CE Setup

  1. Enrich lookups used to filter dashboard: Throughout the solution, individual dashboards may be subject to specific requirements, values / ranges / averages. These dashboards utilize lookups and KV Store collections to enrich and filter datasets. Enrich the following lookups listed on Dashboard Lookups page.

  2. Add panels to dashboards: The solution includes 300+ panels that can be added to dashboards through the Custom Content Page, or through the “Add Panels” button on each practice dashboard. For setup instructions visit the Add Content to Dashboard page.

  3. Additional Configuration: visit the RMF - Additional Setup page for additional configuration.

  4. Setup Multi-Systems (Optional): To setup multiple systems (e.g. a system for each sub-organization) visit the Multi-System Setup page.

  5. Start creating audit entries: Visit the RMF Dashboards page to learn more.