Splunk Enterprise Security

Proofpoint ET or VirusTotal Adaptive Response action

neerajs_81
Contributor

Hello , Has anyone configured Proofpoint ET or VirusTotal Adaptive response action in ES ?  Basically look up the destination IP from events against these websites . Can someone please advise how to configure this ?

For Proofpoint Check ET, it asks for Object .  What is Object here ?

neerajs_81_0-1641822585395.png

 

Tags (2)
0 Karma
*NEW* Splunk Love Promo!
Snag a $25 Visa Gift Card for Giving Your Review!

It's another Splunk Love Special! For a limited time, you can review one of our select Splunk products through Gartner Peer Insights and receive a $25 Visa gift card!

Review:





Or Learn More in Our Blog >>