<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: connection between elastic and splunk in Splunk Enterprise</title>
    <link>https://community.splunk.com/t5/Splunk-Enterprise/connection-between-elastic-and-splunk/m-p/682121#M18965</link>
    <description>&lt;P&gt;Hola gracias por la respuesta, son eventos de seguridad como eventos de Windows y eventos de equipos perimetrales,&lt;BR /&gt;¿necesitamos pasar de elastic para obtener los datos a splunk o reenviar los datos de splunk a elastic, es posible visualizar más datos que el que está indexado? Y si no es posible sería ver mis eventos que se muestran en splunk para verlos en elástico.&lt;/P&gt;</description>
    <pubDate>Wed, 27 Mar 2024 15:56:17 GMT</pubDate>
    <dc:creator>juanarenas</dc:creator>
    <dc:date>2024-03-27T15:56:17Z</dc:date>
    <item>
      <title>connection between elastic and splunk</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/connection-between-elastic-and-splunk/m-p/681857#M18939</link>
      <description>&lt;P&gt;Good morning, I hope you can help me,&lt;BR /&gt;we maintain an infrastructure with splunk enterprise with SIEM and we must forward the security events to an elastic and kafka, I would like to know how I could forward the events and if this will consume license.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Mar 2024 13:15:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/connection-between-elastic-and-splunk/m-p/681857#M18939</guid>
      <dc:creator>juanarenas</dc:creator>
      <dc:date>2024-03-25T13:15:40Z</dc:date>
    </item>
    <item>
      <title>Re: connection between elastic and splunk</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/connection-between-elastic-and-splunk/m-p/681908#M18941</link>
      <description>&lt;P&gt;More words please. What is your business case. What "security events" do you want to "forward" from Splunk. Do you want the same events ingested in Splunk and Elastic/Kafka/whatever or maybe you want to just generate an event in case some alert is triggered in Splunk?&lt;/P&gt;</description>
      <pubDate>Mon, 25 Mar 2024 21:07:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/connection-between-elastic-and-splunk/m-p/681908#M18941</guid>
      <dc:creator>PickleRick</dc:creator>
      <dc:date>2024-03-25T21:07:07Z</dc:date>
    </item>
    <item>
      <title>Re: connection between elastic and splunk</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise/connection-between-elastic-and-splunk/m-p/682121#M18965</link>
      <description>&lt;P&gt;Hola gracias por la respuesta, son eventos de seguridad como eventos de Windows y eventos de equipos perimetrales,&lt;BR /&gt;¿necesitamos pasar de elastic para obtener los datos a splunk o reenviar los datos de splunk a elastic, es posible visualizar más datos que el que está indexado? Y si no es posible sería ver mis eventos que se muestran en splunk para verlos en elástico.&lt;/P&gt;</description>
      <pubDate>Wed, 27 Mar 2024 15:56:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise/connection-between-elastic-and-splunk/m-p/682121#M18965</guid>
      <dc:creator>juanarenas</dc:creator>
      <dc:date>2024-03-27T15:56:17Z</dc:date>
    </item>
  </channel>
</rss>

