Hello ,
We have a Splunk ES 5.1.0 application installed on Splunk Entreprise version 7.2.0.
We need to collect the threat logs data from our antivirus ‘Symantec’ ( Threat Logs ).We need to be collected the threat logs to generate and detecting threats on the application Entreprise Security.
I installed the splunk add-on for symantec and i collect data but i have no threat event with the application Entreprise Security.
Any help please ?