criblpacks / cribl-palo-alto-networks
Process, reduce, and transform Palo Alto Networks Firewall logs.
☆15Updated 7 months ago
Alternatives and similar repositories for cribl-palo-alto-networks
Users that are interested in cribl-palo-alto-networks are comparing it to the libraries listed below
Sorting:
- This pack is targeted for collections of Window events in the Classic or newer XML format. For events in the Classic format, sometimes th…☆16Updated 2 years ago
- scripts to configure the Splunk Universal Forwarder in a locked down state☆40Updated 6 years ago
- TrackMe - Data tracking system for Splunk admins☆50Updated 2 years ago
- Skillets is the default holding place for useful Panhandler skillets. These are usually smaller one-off bits that may not require their o…☆11Updated 5 years ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- A tool for bulk URL queries against Palo Alto Networks' PAN-DB cloud database☆18Updated last year
- Grand Central logging for Cloud Services to Splunk☆36Updated 3 years ago
- Palo Alto Networks App for Splunk leverages the data visibility provided by Palo Alto Networks next-generation firewalls and endpoint sec…☆107Updated 7 months ago
- MineMeld nodes for MISP☆19Updated last year
- Palo Alto Networks Rule Parser☆16Updated 8 years ago
- Data validator agains Splunk Common Information Model (CIM)☆76Updated last year
- Official Palo Alto Networks MineMeld docker☆17Updated 5 years ago
- The Palo Alto Networks Add-on for Splunk allows a Splunk® Enterprise or Splunk Cloud administrator to collect data from Palo Alto Network…☆21Updated 4 years ago
- Downloading Splunk, made easy through scripts☆19Updated 2 months ago
- Collection of useful python scripts to interact with Splunk's API.☆15Updated 3 years ago
- Scripted inputs designed to address common use-cases in forwarder misconfigurations in a Splunk deployment☆35Updated 8 months ago
- Sunburst IOCs for Splunk Ingest☆18Updated 4 years ago
- Splunk Admins application to assist with troubleshooting Splunk enterprise installations☆94Updated this week
- Allows for MAC address to vendor mapping in Splunk☆16Updated last year
- Install a full Splunk Enterprise Cluster or Universal forwarder using an ansible playbook☆52Updated 4 years ago
- Searches and dashboards to assist with optimising concurrency settings☆30Updated 3 years ago
- Cisco eStreamer client☆24Updated 2 years ago
- Files and Folders for BSides Splunk 2021☆22Updated 4 years ago
- RBA is Splunk's method to aggregate low-fidelity security events as interesting observations tagged with security metadata to create high…☆53Updated last month
- Kintyre's Splunk Configuration tool☆51Updated 2 months ago
- Shell script to download apps from Splunkbase☆22Updated 4 years ago
- Allows to pull asset and identity data into Splunk app for Enterprise Security from LDAP and other sources☆27Updated 7 years ago
- Splunk (Other Splunk scripts which do not fit into the SplunkAdmins application)☆41Updated 8 months ago
- Configuration for a Palo Alto Networks fed ELK Stack with Visualizations☆73Updated 6 years ago
- A repository for generalized splunk code, dashboards, resources and suggestions/recommendations.☆32Updated 2 years ago