Skip to content

rba-community/SA-CortexXDRDevices

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

4 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

SA-CortexXDRDevices for Enterprise Security

GitHub Docs Appinspect GitHub release (latest SemVer) Splunkbase App Splunk ES Compatibility XDR Endpoint TA Compatibility Splunk Cloud Compatibility Author LinkedIn

This supporting add-on comes with prebuilt content for Palo Alto Networks Cortex XDR data to be easily used with Splunk Enterprise Security's Asset database.

** This supporting add-on is only intended to work with Splunk Enterprise Security deployments **

Documentation

Full documentation can be found at https://pan-xdr.rba.community.

Disclaimer

This Splunk Supporting Add-on is not affiliated with Palo Alto Networks and is not sponsored or sanctioned by the Palo Alto Networks team. Please visit https://www.paloaltonetworks.com/ for more information about Palo Alto Networks.

About

Info Description
SA-CortexXDRDevices 1.0.0 - Splunkbase | GitHub
Splunk Enterprise Security Version (Required) 7.x | 6.x
Palo Alto Cortex XDR Endpoint Retriever (Required) >=1.0.1
Add-on has a web UI No, this add-on does not contain views.
Author Dennis Morton

Issues or Feature Requests

Please open an issue or feature request on Github.

About

This supporting add-on comes with prebuilt content for Palo Alto Networks Cortex XDR data to be easily used with Splunk Enterprise Security's Asset database.

Resources

License

Stars

Watchers

Forks

Contributors