All Apps and Add-ons

Qualys integration with Splunk 7.0.3

Aleksey_18
New Member

Hello.
Help properly connect the Qualys vulnerability scanner to the Splunk.
I can not understand on what servers I need to install a technical addon - Qualys Technology Add-on for Splunk ver. 1.3.2
My server architecture is a Splunk:
- Server SH
- Server HF
- Server Indexer - 1 (cluster node)
- Server Indexer - 2 (cluster node)
- Cluster master

With the technical addon are the following intuitions:
- host_detection
- knowledge_base
- policy_posture_info
- was_findings

And also in the most addon (Qualys Technology Add (TA)) there is a config configurable connection by AIPI to cloudy Qualys.
Where is this connection configured ?
If I collect data via HF, then this addon is configured only for HF or also for SH ?

0 Karma
Get Updates on the Splunk Community!

Join Us for Splunk University and Get Your Bootcamp Game On!

If you know, you know! Splunk University is the vibe this summer so register today for bootcamps galore ...

.conf24 | Learning Tracks for Security, Observability, Platform, and Developers!

.conf24 is taking place at The Venetian in Las Vegas from June 11 - 14. Continue reading to learn about the ...

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...