Skip to content

This supporting add-on comes with prebuilt content for Palo Alto Networks Cortex XDR data to be easily used with Splunk Enterprise Security's Asset database.

License

Notifications You must be signed in to change notification settings

rba-community/SA-CortexXDRDevices

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

4 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

SA-CortexXDRDevices for Enterprise Security

GitHub Docs Appinspect GitHub release (latest SemVer) Splunkbase App Splunk ES Compatibility XDR Endpoint TA Compatibility Splunk Cloud Compatibility Author LinkedIn

This supporting add-on comes with prebuilt content for Palo Alto Networks Cortex XDR data to be easily used with Splunk Enterprise Security's Asset database.

** This supporting add-on is only intended to work with Splunk Enterprise Security deployments **

Documentation

Full documentation can be found at https://pan-xdr.rba.community.

Disclaimer

This Splunk Supporting Add-on is not affiliated with Palo Alto Networks and is not sponsored or sanctioned by the Palo Alto Networks team. Please visit https://www.paloaltonetworks.com/ for more information about Palo Alto Networks.

About

Info Description
SA-CortexXDRDevices 1.0.0 - Splunkbase | GitHub
Splunk Enterprise Security Version (Required) 7.x | 6.x
Palo Alto Cortex XDR Endpoint Retriever (Required) >=1.0.1
Add-on has a web UI No, this add-on does not contain views.
Author Dennis Morton

Issues or Feature Requests

Please open an issue or feature request on Github.

About

This supporting add-on comes with prebuilt content for Palo Alto Networks Cortex XDR data to be easily used with Splunk Enterprise Security's Asset database.

Resources

License

Stars

Watchers

Forks