This TA takes Suricata5 data from your port mirrored Suricata server and makes it readable within Splunk. See Cheatsheets on how to setup a Suricata Port Mirrored Server
-
Updated
Sep 5, 2020
This TA takes Suricata5 data from your port mirrored Suricata server and makes it readable within Splunk. See Cheatsheets on how to setup a Suricata Port Mirrored Server
Easily create Splunk searches from Python and get the result as a Python object.
Drill down into your python logs using JSON logs stored in Splunk - supports sending over TCP or the Splunk HEC REST API handlers (using threads or multiprocessing) - includes a pre-configured Splunk sandbox in a docker container
✨ highlight.js syntax definition for the Splunk search processing language (SPL)
Splunk react application
html2text Search Command for Splunk
App for Detection Technique Deep Dive Session at Splunk Conf 2018
Splunk Search that shows details about the investigations (their notable events and response time)
A Splunk App to collect and monitor security related data from your BTHomeHub5.
Add a description, image, and links to the splunk-searches topic page so that developers can more easily learn about it.
To associate your repository with the splunk-searches topic, visit your repo's landing page and select "manage topics."