PaloAltoNetworks / Splunk-Apps
Palo Alto Networks App for Splunk leverages the data visibility provided by Palo Alto Networks next-generation firewalls and endpoint security with Splunk's extensive investigation and visualization capabilities to deliver an advanced security reporting and analysis tool.
☆103Updated 2 months ago
Related projects: ⓘ
- Ansible playbook for installing MineMeld on Linux☆48Updated 3 years ago
- Engine of MineMeld☆141Updated last year
- Framework and utilities to easily manage and edit Palo Alto Network PANOS devices☆222Updated 3 years ago
- A tool for bulk URL queries against Palo Alto Networks' PAN-DB cloud database☆17Updated last year
- WebUI of MineMeld☆43Updated last year
- A collection of pre-installed tools commonly used with Palo Alto Networks products packaged as a Docker container☆16Updated 4 years ago
- The Palo Alto Networks Add-on for Splunk allows a Splunk® Enterprise or Splunk Cloud administrator to collect data from Palo Alto Network…☆20Updated 4 years ago
- Prototypes for MineMeld nodes☆39Updated 2 years ago
- Ansible modules for Palo Alto Networks NGFWs☆229Updated last year
- Docker Splunk "Orchestration" bash script (6,000+ lines) to create fully automated pre-configured splunk site-2-site clusters or stand al…☆138Updated 4 years ago
- Palo Alto Networks Rule Parser☆16Updated 8 years ago
- Data validator agains Splunk Common Information Model (CIM)☆74Updated 5 months ago
- Allows to pull asset and identity data into Splunk app for Enterprise Security from LDAP and other sources☆27Updated 6 years ago
- Cisco eStreamer client☆25Updated 2 years ago
- Configuration for a Palo Alto Networks fed ELK Stack with Visualizations☆72Updated 5 years ago
- Subscribe to raw VMware Carbon Black EDR event feed and forward to another system, such as Splunk.☆73Updated 4 months ago
- Syslog Connector for the Carbon Black Cloud☆28Updated 2 months ago
- PANW Firewall Visualisations using Elastic Stack☆89Updated last year
- Official Palo Alto Networks MineMeld docker☆16Updated 4 years ago
- SELinux Policy for Splunk☆55Updated 5 years ago
- scripts to configure the Splunk Universal Forwarder in a locked down state☆39Updated 5 years ago
- Python idiomatic SDK for Cortex™ Data Lake.☆44Updated 2 weeks ago
- A series of tools used to work with Palo Alto Networks firewalls.☆12Updated 5 years ago
- MineMeld nodes for MISP☆18Updated 7 months ago
- A command line utility to aid in using autofocus for IR and research☆27Updated 4 years ago
- Splunk Admins application to assist with troubleshooting Splunk enterprise installations☆89Updated last week
- Allows for MAC address to vendor mapping in Splunk☆16Updated 11 months ago
- Splunk (Other Splunk scripts which do not fit into the SplunkAdmins application)☆37Updated 3 weeks ago
- Ansible framework providing a fast and simple way to spin up complex Splunk environments.☆117Updated 6 months ago
- ☆32Updated this week