<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Proofpoint TRAP Cloud -&amp;gt; Splunk in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Proofpoint-TRAP-Cloud-gt-Splunk/m-p/711252#M117503</link>
    <description>&lt;P&gt;We investigated this add-on, but altough it mentions TRAP, there is no information provided to configure it.&lt;/P&gt;&lt;P&gt;TRAP Cloud integration method, as far as I know, is by API.&lt;/P&gt;</description>
    <pubDate>Tue, 11 Feb 2025 10:40:12 GMT</pubDate>
    <dc:creator>solg</dc:creator>
    <dc:date>2025-02-11T10:40:12Z</dc:date>
    <item>
      <title>Proofpoint TRAP Cloud -&gt; Splunk</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Proofpoint-TRAP-Cloud-gt-Splunk/m-p/710912#M117423</link>
      <description>&lt;P&gt;TRAP Cloud has an API to export information, but there is no Add-On to integrate TRAP Cloud with Splunk&lt;/P&gt;&lt;P&gt;Has anyone made this integration succesfully?&lt;/P&gt;&lt;P&gt;Is there intention to implement a supported Add-On on Splunk to integrate TRAP Cloud?&lt;/P&gt;</description>
      <pubDate>Fri, 07 Feb 2025 12:06:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Proofpoint-TRAP-Cloud-gt-Splunk/m-p/710912#M117423</guid>
      <dc:creator>solg</dc:creator>
      <dc:date>2025-02-07T12:06:24Z</dc:date>
    </item>
    <item>
      <title>Re: Proofpoint TRAP Cloud -&gt; Splunk</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Proofpoint-TRAP-Cloud-gt-Splunk/m-p/710913#M117424</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/271874"&gt;@solg&lt;/a&gt;&amp;nbsp;It looks&lt;SPAN&gt;&amp;nbsp;like there is nothing publicly available. We had to reach out to Proofpoint for the py script to get TRAP data in. It&amp;nbsp;sounds like a question for ProofPoint.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;You can download the APP and related TA's here:&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;App:&lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;BR /&gt;&lt;A href="https://splunkbase.splunk.com/app/3727/?_gl=1*fkuh2k*_gcl_au*MTkxNTMwNDQ0Ni4xNzMyMDM0ODA2*FPAU*MTkxNTMwNDQ0Ni4xNzMyMDM0ODA2*_ga*MzkwNjAzMDUwLjE3MzIwMzQ4MDY.*_ga_5EPM2P39FV*MTczODkzMTIzNS41OC4xLjE3Mzg5MzE1NjYuMC4wLjExMjMzMjY1OTI.*_fplc*VmwlMkJTVyUyQjglMkZJSmFWTEZKYyUyRlV5aWF5JTJCamhDUjl3YlAlMkJmVEY2TnRsQVNOWlpya0V6SkFKa0lqMzA1dExZUExkY0hPNlZDZHltOFpzRTlnVnV3SVd2Q0cxbkllSVdHYlYlMkJ2VHA1Y2FjblJGSm9RWWNKSlhZRk1pd1V3YUpKT1ElM0QlM0Q.#/details" target="_blank" rel="noopener"&gt;&lt;SPAN class=""&gt;https://splunkbase.splunk.com/app/3727/#/details&lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;Gateway TA:&lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;BR /&gt;&lt;A href="https://splunkbase.splunk.com/app/3080/?_gl=1*1p3qx7k*_gcl_au*MTkxNTMwNDQ0Ni4xNzMyMDM0ODA2*FPAU*MTkxNTMwNDQ0Ni4xNzMyMDM0ODA2*_ga*MzkwNjAzMDUwLjE3MzIwMzQ4MDY.*_ga_5EPM2P39FV*MTczODkzMTIzNS41OC4xLjE3Mzg5MzE1OTIuMC4wLjExMjMzMjY1OTI.*_fplc*N1d3cFRTcVM4aUtnejhoYk4xa1dHNDBSU29FdTJpdmZ4JTJCbG1Pc3VsSnVhV3U4MkNsTkY5VkJIdEJqT1BxMWp0TjgzUW5heGVPSyUyRjcwdHB3djhuS0ZrclhZNkZHVDdwTzBnTFZuZGV3QWx0eGJ3eWtidGo1aGFsRlNPSnZDdyUzRCUzRA.." target="_blank" rel="noopener"&gt;&lt;SPAN class=""&gt;https://splunkbase.splunk.com/app/3080/&lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN class=""&gt;TAP TA:&lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;BR /&gt;&lt;A href="https://splunkbase.splunk.com/app/3681/?_gl=1*1cc4ewf*_gcl_au*MTkxNTMwNDQ0Ni4xNzMyMDM0ODA2*FPAU*MTkxNTMwNDQ0Ni4xNzMyMDM0ODA2*_ga*MzkwNjAzMDUwLjE3MzIwMzQ4MDY.*_ga_5EPM2P39FV*MTczODkzMTIzNS41OC4xLjE3Mzg5MzE2MDMuMC4wLjExMjMzMjY1OTI.*_fplc*THNWdERrRUs1ZU1LU2JtNmRlVzU1blVveDk2VzFCTUZ5OEtvMVpnRmM0cTREYnU1SlQlMkJPa1klMkIwdzRGemg3blRTZXo5amwxV2FhZTRIMlByaGlPNndXZzdLb2dpN3ZRdW42SFNUWjN6MWozRlNXc1NQTHRFaWt1MnRuSHhaUSUzRCUzRA.." target="_blank" rel="noopener"&gt;&lt;SPAN class=""&gt;https://splunkbase.splunk.com/app/3681/&lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 07 Feb 2025 12:35:46 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Proofpoint-TRAP-Cloud-gt-Splunk/m-p/710913#M117424</guid>
      <dc:creator>kiran_panchavat</dc:creator>
      <dc:date>2025-02-07T12:35:46Z</dc:date>
    </item>
    <item>
      <title>Re: Proofpoint TRAP Cloud -&gt; Splunk</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Proofpoint-TRAP-Cloud-gt-Splunk/m-p/710914#M117425</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/271874"&gt;@solg&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As far as I know, you can send the TRAPS using HEC token or via Syslog. Kindly check the below add-on.&amp;nbsp;This Add-on is intended to be installed on Splunk Search Heads or HF's and where Splunk HEC is configured for Proofpoint TRAP.&lt;/P&gt;&lt;P&gt;As of now, there is no official Splunk Add-On specifically designed for integrating Proofpoint Threat Response Auto-Pull (TRAP) Cloud with Splunk. However, the "CCX Extensions for Proofpoint Products" app on Splunkbase includes a component named proofpoint:trap:hec, which is intended for integrating Proofpoint TRAP with Splunk.&lt;/P&gt;&lt;P&gt;&lt;A href="https://splunkbase.splunk.com/app/6339" target="_blank" rel="noopener"&gt;https://splunkbase.splunk.com/app/6339&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 07 Feb 2025 12:49:14 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Proofpoint-TRAP-Cloud-gt-Splunk/m-p/710914#M117425</guid>
      <dc:creator>kiran_panchavat</dc:creator>
      <dc:date>2025-02-07T12:49:14Z</dc:date>
    </item>
    <item>
      <title>Re: Proofpoint TRAP Cloud -&gt; Splunk</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Proofpoint-TRAP-Cloud-gt-Splunk/m-p/711252#M117503</link>
      <description>&lt;P&gt;We investigated this add-on, but altough it mentions TRAP, there is no information provided to configure it.&lt;/P&gt;&lt;P&gt;TRAP Cloud integration method, as far as I know, is by API.&lt;/P&gt;</description>
      <pubDate>Tue, 11 Feb 2025 10:40:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Proofpoint-TRAP-Cloud-gt-Splunk/m-p/711252#M117503</guid>
      <dc:creator>solg</dc:creator>
      <dc:date>2025-02-11T10:40:12Z</dc:date>
    </item>
    <item>
      <title>Re: Proofpoint TRAP Cloud -&gt; Splunk</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Proofpoint-TRAP-Cloud-gt-Splunk/m-p/711412#M117529</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/264857"&gt;@kiran_panchavat&lt;/a&gt;&amp;nbsp;we are facing similar issue, any chance you can share the py script you received from PP?&lt;/P&gt;</description>
      <pubDate>Wed, 12 Feb 2025 18:55:16 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Proofpoint-TRAP-Cloud-gt-Splunk/m-p/711412#M117529</guid>
      <dc:creator>lexlexy</dc:creator>
      <dc:date>2025-02-12T18:55:16Z</dc:date>
    </item>
  </channel>
</rss>

