This TA takes Suricata5 data from your port mirrored Suricata server and makes it readable within Splunk. See Cheatsheets on how to setup a Suricata Port Mirrored Server
-
Updated
Sep 5, 2020
This TA takes Suricata5 data from your port mirrored Suricata server and makes it readable within Splunk. See Cheatsheets on how to setup a Suricata Port Mirrored Server
Drill down into your python logs using JSON logs stored in Splunk - supports sending over TCP or the Splunk HEC REST API handlers (using threads or multiprocessing) - includes a pre-configured Splunk sandbox in a docker container
A quick and dirty implementation to get DMARC reports into Splunk for further analysis
Extend the default Splunk KV Store API
A repository of custom algorithm examples for the Splunk Machine Learning Toolkit.
Splunk react application
Splunk HTTP forwarder class with Metadata
Utility to search in Splunk maillog email from Message-ID, from, to, date.
Add a description, image, and links to the splunk-sdk topic page so that developers can more easily learn about it.
To associate your repository with the splunk-sdk topic, visit your repo's landing page and select "manage topics."