criblpacks / cribl-palo-alto-networksLinks
Process, reduce, and transform Palo Alto Networks Firewall logs.
☆18Updated 4 months ago
Alternatives and similar repositories for cribl-palo-alto-networks
Users that are interested in cribl-palo-alto-networks are comparing it to the libraries listed below
Sorting:
- This pack is targeted for collections of Window events in the Classic or newer XML format. For events in the Classic format, sometimes th…☆16Updated 2 years ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- Configuration for a Palo Alto Networks fed ELK Stack with Visualizations☆75Updated 6 years ago
- Palo Alto Networks App for Splunk leverages the data visibility provided by Palo Alto Networks next-generation firewalls and endpoint sec…☆108Updated last year
- SIEM Logstash parsing for more than hundred technologies☆192Updated last week
- Palo Alto Networks Rule Parser☆16Updated 9 years ago
- Docker Splunk "Orchestration" bash script (6,000+ lines) to create fully automated pre-configured splunk site-2-site clusters or stand al…☆139Updated 5 years ago
- Splunk Admins application to assist with troubleshooting Splunk enterprise installations☆97Updated 3 weeks ago
- TrackMe - Data tracking system for Splunk admins☆50Updated 2 years ago
- Visual Studio Code Extension for Splunk☆94Updated last month
- Splunk Connect for Syslog☆171Updated last week
- Skillets is the default holding place for useful Panhandler skillets. These are usually smaller one-off bits that may not require their o…☆12Updated 5 years ago
- App examples for Splunk Enterprise☆150Updated 3 months ago
- PANW Firewall Visualisations using Elastic Stack☆91Updated 2 years ago
- Allows to pull asset and identity data into Splunk app for Enterprise Security from LDAP and other sources☆28Updated 7 years ago
- SELinux Policy for Splunk☆58Updated 6 years ago
- Splunk Content Control Tool☆124Updated last week
- Shell script to download apps from Splunkbase☆23Updated 5 years ago
- Splunk App for Data Science and Deep Learning - container images repository☆61Updated 3 weeks ago
- Run zeek with zeekctl in docker☆61Updated last year
- Cisco eStreamer client☆24Updated 3 years ago
- A website for monitoring web applications☆44Updated last year
- Install a full Splunk Enterprise Cluster or Universal forwarder using an ansible playbook☆54Updated 5 years ago
- Data validator agains Splunk Common Information Model (CIM)☆78Updated last year
- A tool for bulk URL queries against Palo Alto Networks' PAN-DB cloud database☆18Updated 2 years ago
- RBA is Splunk's method to aggregate low-fidelity security events as interesting observations tagged with security metadata to create high…☆61Updated last week
- Downloading Splunk, made easy through scripts☆24Updated last month
- This is a repository of vendor-agnostic workflows provided for those interested in deploying Security Orchestration, Automation, and Resp…☆89Updated 4 years ago
- Zeek Training Materials/Products☆40Updated 3 weeks ago
- Kintyre's Splunk Configuration tool☆53Updated 9 months ago