Splunk Enterprise Security

Splunk Enterprise Security: Is there a developer version?

rohansecadvbot
Explorer

Hi
I am trying to create add-ons for splunk enterprise security. is there a developer version of the app , with sample data, that i can install on my local splunk enterprise (like the cloud sandbox trial thats offered). I have a splunk dev license.

Thanks

0 Karma
1 Solution

LukeMurphey
Champion

ES includes data samples that can be used to populate the indexes accordingly. To use them, just install the Eventgen app along with ES. Eventgen will automatically begin making events.

Thus, all you need to do is:

  1. Request a Developer copy from http://dev.splunk.com/view/enterprise-security/SP-CAAAFA6
  2. Use Eventgen app to populate the indexes

There are tons of resources that can be helpful for writing apps so make sure to ask questions here if you run into trouble.

View solution in original post

LukeMurphey
Champion

ES includes data samples that can be used to populate the indexes accordingly. To use them, just install the Eventgen app along with ES. Eventgen will automatically begin making events.

Thus, all you need to do is:

  1. Request a Developer copy from http://dev.splunk.com/view/enterprise-security/SP-CAAAFA6
  2. Use Eventgen app to populate the indexes

There are tons of resources that can be helpful for writing apps so make sure to ask questions here if you run into trouble.

rpille_splunk
Splunk Employee
Splunk Employee

See http://dev.splunk.com/view/enterprise-security/SP-CAAAFA6. There's a contact email there that you can use to request a dev copy.

Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Dynamic formatting from XML events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...