Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Multiple data model names conflicting with Splunk CIM listing #15

Open
kmfpo opened this issue Jun 19, 2018 · 1 comment
Open

Multiple data model names conflicting with Splunk CIM listing #15

kmfpo opened this issue Jun 19, 2018 · 1 comment

Comments

@kmfpo
Copy link

kmfpo commented Jun 19, 2018

While using the app, came across the following:

Domain Analysis - not official data model
Compute Inventory - that's the name of the .json file, can it be named "Inventory" like official documentation?
Identity Management - not official data model
Incident Management - not official data model, changed to Ticket Management?
Risk - not official data model
Threat Intelligence - not official data model

@hire-vladimir
Copy link
Owner

Hi @kmfpo,
What is the specific ask of this issue? Most of the data models that you mention ship specifically with ES / not part of the Splunk_SA_CIM app. The cim_vladiator app works with any datamodel, be it form Splunk_SA_CIM, premium Splunk app such as ES, or user defined to accommodate broad number of validation use-cases.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging a pull request may close this issue.

2 participants