MattUebel / splunk_UF_hardeningLinks
scripts to configure the Splunk Universal Forwarder in a locked down state
☆40Updated 6 years ago
Alternatives and similar repositories for splunk_UF_hardening
Users that are interested in splunk_UF_hardening are comparing it to the libraries listed below
Sorting:
- ☆14Updated 8 years ago
- Allows to pull asset and identity data into Splunk app for Enterprise Security from LDAP and other sources☆27Updated 7 years ago
- Risk Based Alerting Supporting Add-On (SA) for Splunk☆45Updated 3 years ago
- ☆55Updated 3 years ago
- Data validator agains Splunk Common Information Model (CIM)☆76Updated last year
- TrackMe - Data tracking system for Splunk admins☆50Updated 2 years ago
- Allows for MAC address to vendor mapping in Splunk☆16Updated last year
- Sysmon Splunk App☆46Updated 6 years ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- SELinux Policy for Splunk☆56Updated 5 years ago
- A repository for generalized splunk code, dashboards, resources and suggestions/recommendations.☆32Updated 2 years ago
- Splunk (Other Splunk scripts which do not fit into the SplunkAdmins application)☆41Updated last week
- Sunburst IOCs for Splunk Ingest☆18Updated 4 years ago
- Install a full Splunk Enterprise Cluster or Universal forwarder using an ansible playbook☆52Updated 5 years ago
- Scripted inputs designed to address common use-cases in forwarder misconfigurations in a Splunk deployment☆35Updated 9 months ago
- Grand Central logging for Cloud Services to Splunk☆36Updated 3 years ago
- ☆41Updated last year
- This repo represents work the Phantom Community collaborates on to build apps and learn.☆12Updated 4 years ago
- Various Splunk Scripts and applets, all in one place☆33Updated this week
- Cerner's Splunk Cookbook☆30Updated last year
- A Splunk technology add-on for osquery☆14Updated 4 years ago
- ☆22Updated 2 years ago
- Collection of useful python scripts to interact with Splunk's API.☆15Updated 3 years ago
- Azure Functions for getting data in to Splunk☆32Updated 4 months ago
- MineMeld nodes for MISP☆19Updated last year
- Splunk App for Linux Auditd☆58Updated 4 years ago
- Config viewer and file editor for Splunk. Based on VSCode.☆31Updated last year
- Splunk Remote Work Insights - Executive Dashboard☆42Updated 4 years ago
- A Splunk app to use MISP in background☆110Updated 3 weeks ago
- Deploy and maintain Symon through the Splunk Deployment Sever☆31Updated 4 years ago