All Apps and Add-ons

Help with TA-Addon: Best integration Method

0xAli
Path Finder

Hi,
I hope u all are doing well.

I am seeking for the best integration method for the below:

  1. Seclore DRM
  2. Delinea PAM
  3. Arbor Ddos
  4. Gemalto 2FA
  5. Tipping point IPS/IDS
  6. Thales encryption
  7. Ivanti VPN
  8. fortiweb
  9. fortimanager
  10. Carbon black EDR
  11. Trellix “HX EDR, sandbox EX”
  12. Aruba clearpass
0 Karma

0xAli
Path Finder

I searched for spkunkbase for all the mentioned data sources, unfortunately there are not supported,  now checking with the community here if anyone faced the same and has built a custom TA-Addon and want to share it or at least mentioned the integration method will make the custom Addon creation easier.

0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @0xAli 

this sounds like quite a significant data onboarding task. I would start by investigating on Splunkbase for Splunk supported or vendor apps for each system, then work down from there to find community apps for the gaps, then if you find specific gaps then raise those here for the community to comment/answer based on their experiences. 

 

🌟 Did this answer help you? If so, please consider:

    • Adding karma to show it was useful
    • Marking it as the solution if it resolved your issue
    • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing.

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...