Splunk SOAR (f.k.a. Phantom)

Why are the alert options missing for Splunk App for SOAR Export on Splunk (non ES)?

geekf
Path Finder

I installed the Splunk App for SOAR Export app on Splunk, and I can see two alert options in manage alerts, namely 'Run Playbook in SOAR' and 'Send to SOAR'. However, when I go to add an alert action, these two are missing from there. 

These options were available when I first installed the app, and then they were gone from the alert.

0 Karma
Get Updates on the Splunk Community!

Using Machine Learning for Hunting Security Threats

Seeing the exponential hike in global cyber threat spectrum, organizations are now striving more for AI / ...

New Articles from Academic Learning Partners, Help Expand Lantern’s Use Case Library, ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Your Guide to SPL2 at .conf24!

So, you’re headed to .conf24? You’re in for a good time. Las Vegas weather is just *chef’s kiss* beautiful in ...