Splunk Enterprise Security

Is it possible/practical to use adaptive response to send data to non-Splunk REST API?

New Member

Is it possible/practical to use the adaptive response actions to send notable events from splunk ES to another application's REST API?

0 Karma

Esteemed Legend

Yes, start with the Add-on Builder: https://splunkbase.splunk.com/app/2962/