microsoft / AzureMonitorAddonForSplunkLinks
A Splunk add-on (aka modular input) that brings Metrics and Diagnostic Logs from various Azure ARM resources and the subscription-wide Activity Log (aka Audit Log) to Splunk Enterprise.
☆62Updated 5 years ago
Alternatives and similar repositories for AzureMonitorAddonForSplunk
Users that are interested in AzureMonitorAddonForSplunk are comparing it to the libraries listed below
Sorting:
- An Azure Function to make Azure Monitor telemetry available to a Splunk monitoring system.☆50Updated 5 years ago
- Azure Functions for getting data in to Splunk☆33Updated 2 months ago
- Azure Log Analytics output plugin for Logstash☆31Updated 5 years ago
- Splunk Tableau Web Data Connector (WDC) Example☆20Updated 2 years ago
- ☆14Updated 9 years ago
- Data validator agains Splunk Common Information Model (CIM)☆78Updated last year
- scripts to configure the Splunk Universal Forwarder in a locked down state☆40Updated 7 years ago
- Microsoft Security Guidance☆252Updated last year
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- Allows to pull asset and identity data into Splunk app for Enterprise Security from LDAP and other sources☆28Updated 7 years ago
- Cerner's Splunk Cookbook☆31Updated 2 years ago
- A collection of scripts and works related to Azure Sentinel☆41Updated 3 years ago
- Docker Splunk "Orchestration" bash script (6,000+ lines) to create fully automated pre-configured splunk site-2-site clusters or stand al…☆139Updated 5 years ago
- PowerShell module for Azure Sentinel☆233Updated 3 years ago
- Deploying and Managing Azure Sentinel – Ninja style☆32Updated 5 years ago
- Forward Azure monitor logs to syslog (via Event Hub)☆35Updated 5 years ago
- An example of the use of tabs on a Splunk dashboard. #splunk☆22Updated 2 years ago
- Windows Event Forwarding subscriptions, configuration files and scripts that assist with implementing ACSC's protect publication, Technic…☆227Updated 10 months ago
- ☆22Updated 3 months ago
- Grand Central logging for Cloud Services to Splunk☆36Updated 3 years ago
- Subscribe to raw VMware Carbon Black EDR event feed and forward to another system, such as Splunk.☆73Updated last year
- Risk Based Alerting Supporting Add-On (SA) for Splunk☆44Updated 4 years ago
- This repo represents work the Phantom Community collaborates on to build apps and learn.☆13Updated 4 years ago
- Splunk Enterprise on AWS - QuickStart☆14Updated 3 years ago
- Splunk Admins application to assist with troubleshooting Splunk enterprise installations☆97Updated 3 weeks ago
- The Microsoft Cybersecurity Reference Architecture (https://aka.ms/MCRA) describes Microsoft’s cybersecurity capabilities and how they in…☆21Updated 7 years ago
- Splunk (Other Splunk scripts which do not fit into the SplunkAdmins application)☆41Updated 3 months ago
- Framework that sits on top of Splunk Enterprise Security to do auto-mitigation☆14Updated 11 years ago
- ☆134Updated last year
- Various Splunk Scripts and applets, all in one place☆33Updated this week