Splunk Enterprise Security

Is the GuardDuty Add-On supported on Splunk Version 7.2?

cody_richardson
Path Finder

Is the GuardDuty Add-on officially supported on Splunk version 7.2? If not, are there plans to update it so it is supported?

Thank you.

0 Karma
1 Solution

kchamplin_splun
Splunk Employee
Splunk Employee

It's supported on 7.2, however, there is more guidance here on best practices for working with GuardDuty data:
https://www.splunk.com/blog/2018/02/22/serving-it-up-with-aws-and-splunk-aws-serverless-application-...

View solution in original post

0 Karma

cody_richardson
Path Finder

Thank you, kchamplin!

0 Karma

kchamplin_splun
Splunk Employee
Splunk Employee

It's supported on 7.2, however, there is more guidance here on best practices for working with GuardDuty data:
https://www.splunk.com/blog/2018/02/22/serving-it-up-with-aws-and-splunk-aws-serverless-application-...

0 Karma
Get Updates on the Splunk Community!

Tips & Tricks When Using Ingest Actions

Tune in to learn about:Large scale architecture when using Ingest ActionsRegEx performance considerations ...

Announcing Our Splunk MVPs

We are excited to announce the first cohort of the Splunk MVP program. Splunk MVPs are passionate members of ...

Dashboard Studio Challenge - Learn New Tricks, Showcase Your Skills, and Win Prizes!

Reimagine what you can do with your dashboards. Dashboard Studio is Splunk’s newest dashboard builder to ...