All Apps and Add-ons

Which port will be used to integrate Tanium and Splunk using "Tanium Splunk Application" add-on, inorder to get the data from Tanium to Splunk Enterprise?

srideviv
Engager

Which port will be used to integrate Tanium and Splunk using "Tanium Splunk Application" add-on, inorder to get the data from Tanium to Splunk Enterprise?

0 Karma

sumanssah
Communicator

As per details from Tanium website, you can do the integration with Syslog and send data to 514 port of Splunk.

I assume you already started and invested time with Tanium-Splunk integration, would suggest checking below-mentioned URL (which may be helpful with your integration)

https://docs.tanium.com/connect/connect/siem.html

0 Karma

srideviv
Engager

Thank u for the response. I tried using tcp:9997 and it worked. 🙂

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI! Discover how Splunk’s agentic AI ...

[Puzzles] Solve, Learn, Repeat: Dereferencing XML to Fixed-length events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Stay Connected: Your Guide to December Tech Talks, Office Hours, and Webinars!

What are Community Office Hours? Community Office Hours is an interactive 60-minute Zoom series where ...