Getting Data In
Highlighted

How to filter out certain log events before sending the data to a 3rd party system?

Explorer

I am using Splunk to send log source data to QRadar and need to find a way to filter out certain unwanted log events. Do you know of a way to filter out unwanted log events?

FYI - I am sending the log data to QRadar via our 5 indexers.

0 Karma
Highlighted

Re: How to filter out certain log events before sending the data to a 3rd party system?

SplunkTrust
SplunkTrust
0 Karma