Getting Data In

Splunk Log Monitoring

mailmetoramu
Explorer

Hi All,

My company have decided now to monitor logs via SIEM tool Splunk. Actually the logs what we are capturing from all our infrastructure devices should meet ''PCI Compliance''.

By next two months we have PCI audits, so before that i need to set a standard for log monitoring for all our infrastructure devices.Please do let me know the standards of log monitoring using Splunk which should meet pass PCI Compliance.

Also let me know if any proper documentations available forlog monitoring which satisfies PCI Compliance.

Thanks,

Ramu.R

Tags (3)
0 Karma
Get Updates on the Splunk Community!

Filtering logs before indexing using transforms.conf and props.conf creates ingestion ...

Filtering logs before indexing using transforms.conf and props.conf creates ...

Timecharts look like very flat

<span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Jennifer_0-1656485114286.png" ...

Why getting timeout error while adding data to the Splunk cloud index from REST API?

Hello Team,<BR /><BR />I am getting timeout error while adding data to Splunk cloud index from REST API. I am ...