Hi Everyone,
Is there anyway to forward Splunk User Activity Data(audit data) to External QRadar Server.
We have find the below reference link but unfortunately not able to implement because we dont have enough documentation for steps
https://exchange.xforce.ibmcloud.com/hub/extension/f02b54de6c7cd4a5c66676592c36151b
Pleas help me for this