Splunk Enterprise Security

Is there an easy way to configure HTTP proxy for Analytic Story Execution (ASX) App?

ololdach
Builder

Hi fellow Splunkers,

I've stumbled upon a cool piece of code, namely the ASX app that allows you to load configurations from Splunk's security content API and run/schedule analytic stories in the context of ES.

Question: It's probably just me, but is there an easy way to configure HTTP proxy for the app, other than tweaking the code? I'm somewhat reluctant to touch the .py libs since I assume I have just overlooked the documentation that says: " asx.conf: proxy=http://<user>:<passwd>@<proxy>:<port>"

Has anybody hit the same snag and can help with a little code?

Cheers

Oliver

Labels (2)
Tags (1)
0 Karma
Get Updates on the Splunk Community!

Infographic provides the TL;DR for the 2024 Splunk Career Impact Report

We’ve been buzzing with excitement about the recent validation of Splunk Education! The 2024 Splunk Career ...

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...