PaloAltoNetworks / Splunk_TA_paloalto
The Palo Alto Networks Add-on for Splunk allows a Splunk® Enterprise or Splunk Cloud administrator to collect data from Palo Alto Networks Next-Generation Firewall devices and Advanced Endpoint Protection.
☆20Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for Splunk_TA_paloalto
- scripts to configure the Splunk Universal Forwarder in a locked down state☆40Updated 5 years ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 3 years ago
- MineMeld nodes for MISP☆18Updated 9 months ago
- Allows to pull asset and identity data into Splunk app for Enterprise Security from LDAP and other sources☆27Updated 6 years ago
- Palo Alto Networks App for Splunk leverages the data visibility provided by Palo Alto Networks next-generation firewalls and endpoint sec…☆106Updated last month
- Allows for MAC address to vendor mapping in Splunk☆16Updated last year
- Risk Based Alerting Supporting Add-On (SA) for Splunk☆45Updated 3 years ago
- ☆55Updated 2 years ago
- Splunk app to support presentation at .conf2015 on free security tools and Splunk☆10Updated 9 years ago
- WebUI of MineMeld☆43Updated last year
- Data validator agains Splunk Common Information Model (CIM)☆75Updated 7 months ago
- A command line utility to aid in using autofocus for IR and research☆27Updated 5 years ago
- A tool for bulk URL queries against Palo Alto Networks' PAN-DB cloud database☆18Updated last year
- Grand Central logging for Cloud Services to Splunk☆36Updated 2 years ago
- Various Splunk Scripts and applets, all in one place☆32Updated 3 weeks ago
- Splunk TA to provide both modular inputs and a modular alert for synchronizing KVStore content across Splunk Instances.☆14Updated 4 years ago
- Splunk (Other Splunk scripts which do not fit into the SplunkAdmins application)☆38Updated 2 months ago
- Sysmon Splunk App☆46Updated 6 years ago
- Splunk csv to KVStore ES Threat Intel☆10Updated 8 years ago
- Monitor syslog collection infrastructure & offer syslog configuration templates.☆23Updated 6 years ago
- splunksecrets is a tool for working with Splunk secrets offline☆45Updated last week
- Read only mirror. To contribute or submit issues, please go to the website link --->☆12Updated last year
- Sunburst IOCs for Splunk Ingest☆18Updated 3 years ago
- A website for monitoring web applications☆44Updated 3 weeks ago
- This technology adapter add-on fetches emails for Splunk to index from mailboxes using either POP3 or IMAP, with or without SSL.☆9Updated 3 years ago
- Network Forensics Bro scripts & pcap samples☆62Updated 10 years ago
- Install a full Splunk Enterprise Cluster or Universal forwarder using an ansible playbook☆50Updated 4 years ago