Monitoring Splunk

CA SiteMinder - How to get audit logs into Splunk?

morphis72
Path Finder

I need to get the SiteMinder audit logs into Splunk. Currently they we have them going into an Oracle DB. We want to eliminate the Oracle DB and have the audit logs go directly from SiteMinder into Splunk. Is this possible?

0 Karma

morphis72
Path Finder

Just to follow up on this if someone else has similar questions. The audit logs can be configured in SiteMinder to write to log on disk rather than to a database. Then it's like another other data input for Splunk.

0 Karma
Get Updates on the Splunk Community!

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us for an ...

Observability Unlocked: Kubernetes Monitoring with Splunk Observability Cloud

 Ready to master Kubernetes and cloud monitoring like the pros? Join Splunk’s Growth Engineering team for an ...

Update Your SOAR Apps for Python 3.13: What Community Developers Need to Know

To Community SOAR App Developers - we're reaching out with an important update regarding Python 3.9's ...