Splunk Enterprise Security

Proofpoint ET or VirusTotal Adaptive Response action


Hello , Has anyone configured Proofpoint ET or VirusTotal Adaptive response action in ES ?  Basically look up the destination IP from events against these websites . Can someone please advise how to configure this ?

For Proofpoint Check ET, it asks for Object .  What is Object here ?



Tags (2)
0 Karma
*NEW* Splunk Love Promo!
Snag a $25 Visa Gift Card for Giving Your Review!

It's another Splunk Love Special! For a limited time, you can review one of our select Splunk products through Gartner Peer Insights and receive a $25 Visa gift card!


Or Learn More in Our Blog >>