Splunk Enterprise Security

Threat Intelligence

godawatnikunj19
New Member

by default, where from threat Intelligence feed downloaded in splunk ?

0 Karma

att35
Builder

For ES Threat Intel downloads, go to Configure -> Data Enrichment -> Intelligence Downloads. This screen shows you the feed status(Enabled or not) and also the URL it will reach out to download the Intel.

0 Karma
Get Updates on the Splunk Community!

Splunk Enterprise Security 8.0.2 Availability: On cloud and On-premise!

A few months ago, we released Splunk Enterprise Security 8.0 for our cloud customers. Today, we are excited to ...

Logs to Metrics

Logs and Metrics Logs are generally unstructured text or structured events emitted by applications and written ...

Developer Spotlight with Paul Stout

Welcome to our very first developer spotlight release series where we'll feature some awesome Splunk ...