Getting Data In

Which port to connect SOAR solutions with Splunk Cloud?

SplunkExplorer
Contributor

Hi Splunkers, we have to connect our On Prem SOAR Solution (Palo Alto Cortex) to a Splunk Cloud instance.

The dedicated SOAR integrations use API and ask:

  • Username
  • Password
  • URL/Hostanem/IP Address
  • Destination port

We have some problems in destination port; we tried all the Splunk common one (9997, 8000, 8089, 8443) but we got always the Connection Timeour error.
I'm wondering if, due we have a Splunk Cloud Environment, we need to ask to support some 

Labels (1)
0 Karma
Get Updates on the Splunk Community!

.conf24 | Day 0

Hello Splunk Community! My name is Chris, and I'm based in Canberra, Australia's capital, and I travelled for ...

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

(view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...

Troubleshooting the OpenTelemetry Collector

  In this tech talk, you’ll learn how to troubleshoot the OpenTelemetry collector - from checking the ...