- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
How to integrate Crowdstrike with Splunk?
splunker102
Loves-to-Learn Lots
03-30-2022
07:30 AM
I am looking for an add-on/API which can help to onboard all crowdstike related information to splunk.
I see that there is "CrowdStrike Falcon Devices Technical Add-On" available, it retrieves detailed data that the CrowdStrike Falcon sensor has collected about the device.
It does not collect the list of software installed on those devices.
For example,
We have 5000+ windows servers, and I want to check if XYZ software is installed or not !
Is there a way to collected installed software related info into splunk ?
Many thanks in advance!
