Getting Data In

Splunk and TheHive integration

bil151515
Engager

Hey!
My team is interested in integration of Splunk (especially ES) and TheHive Project products.

The goal is to provide automated sending  Splunk Alerts (Notable Events in case of ES) to TheHive platform for further automatic analysis by Cortex and returning results back to Splunk.

I don't have any experience in stuff like that so I would like to get any ideas of solving this problem.

Maybe anyone have done that before on their project and would like to share any solutions?

Labels (2)

splunkreal
Motivator

Hello @bil151515  we have done it successfully if needed.

* If this helps, please upvote or accept solution if it solved *
0 Karma

Bubbleob
New Member

Can you expand on how your team did it? Ideally with step-by-step methods.

0 Karma
Get Updates on the Splunk Community!

See your relevant APM services, dashboards, and alerts in one place with the updated ...

As a Splunk Observability user, you have a lot of data you have to manage, prioritize, and troubleshoot on a ...

Index This | What goes away as soon as you talk about it?

May 2025 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with this month’s ...

What's New in Splunk Observability Cloud and Splunk AppDynamics - May 2025

This month, we’re delivering several new innovations in Splunk Observability Cloud and Splunk AppDynamics ...