Splunk SOAR

Splunk SOAR
Community Activity
JoshiSri
I have a field named start_time on an artifact, and trying to send a mail to a team. But if I just choose the API nam...
by JoshiSri Explorer in Splunk SOAR 07-13-2023
0 5
0
5
carl72086
Hi There,Below is the logic I am trying to achieve:Perform enrichment on a list of host via information extraction us...
by carl72086 Explorer in Splunk SOAR 07-13-2023
0 2
0
2
nongingerale
Hi all - is there a way for us to check/test connectivity across a list of assets from within a playbook? I was looki...
by nongingerale Explorer in Splunk SOAR 07-05-2023
0 1
0
1
SGI
Hi all,We have zip files (password protected) dropped on an NFS share.We want to collect them automaticaly into Splun...
by SGI Engager in Splunk SOAR 07-05-2023
0 1
0
1
victor_menezes
Hey folks,Did anyone ever faced a challenge on having hundreds of thousands of events stuck in phantom_retry kv store...
by victor_menezes Communicator in Splunk SOAR 06-27-2023
0 0
0
0
ada64
Phantom default login credentials do not work for aws instance. "admin/password" or "admin/ aws instace id" are not w...
by ada64 Engager in Splunk SOAR 06-27-2023
0 1
0
1
ada64
hello. myphantom.com is closed. Now how i can download iso image for vm or how i will reach community version for goo...
by ada64 Engager in Splunk SOAR 06-23-2023
0 1
0
1
rudnima7
I am looking for a rest endpoint to be able to attach the source file to the event. You can do this through the brows...
by rudnima7 New Member in Splunk SOAR 06-01-2023
0 1
0
1
casperr
Hi, I am trying to install Splunk SOAR 6.0.1 for Linux. I've followed the prerequisites here: https://docs.splunk.com...
by casperr New Member in Splunk SOAR 06-01-2023
0 0
0
0
1lovebeer
In Splunk Phantom 4.10 Free Community Edition, how can we disable a playbook with a status of running other than by u...
by 1lovebeer New Member in Splunk SOAR 05-29-2023
0 0
0
0
Kays
Helloplease I would like to know if there is a schematic architecture that explains how Splunk SOAR works (where we c...
by Kays New Member in Splunk SOAR 05-23-2023
0 1
0
1
mladen_tomic
We would like to send some additional data during playbook execution to phantom indexes.  Is there a python library o...
by mladen_tomic Engager in Splunk SOAR 05-18-2023
0 0
0
0
JAvnaim
Hello,I am attempting to add an External Splunk Enterprise Instance to SOAR and receive the following error when I cl...
by JAvnaim Explorer in Splunk SOAR 05-15-2023
0 2
0
2
mbrown1
When creating a playbook, the view of individual blocks goes away when adding custom code. Is this expected or some t...
by mbrown1 New Member in Splunk SOAR 05-11-2023
0 1
0
1
victor_menezes
Hi guys,I'm trying to isolate what is being responsible for most of the data size on phantom. My data/db/base folder ...
by victor_menezes Communicator in Splunk SOAR 04-27-2023
0 3
0
3
anweshkumar12
Hi,I have registered for Splunk Phantom Community edition download 4 days ago. However, still the approval is pending...
by anweshkumar12 Engager in Splunk SOAR 04-24-2023
0 1
0
1
nongingerale
Hello - I'm trying to pass a dictionary into a format code block:for example:my_dict = {"hello":"world", "foo":"bar"}...
by nongingerale Explorer in Splunk SOAR 04-20-2023
0 3
0
3
JoshiSri
Hi there,  I am trying to get the containers detials for stipulated time period, Lets say, Jan 1st 2023 - March 31st ...
by JoshiSri Explorer in Splunk SOAR 04-19-2023
0 5
0
5
dennyw
We have a need to migrate our phantom data to another instance including the containers.  Though it's not listed in R...
by dennyw Engager in Splunk SOAR 04-18-2023
0 1
0
1
rferg06
We had previously been successfully using the Splunk SMTP app for SOAR (Phantom) until the beginning of this year.  W...
by rferg06 Explorer in Splunk SOAR 04-17-2023
0 0
0
0
bambarita
Hi splunker, anyone had try to integrate Kaspersky security center v13/14? there is so many api reference here https:...
by bambarita Observer in Splunk SOAR 04-11-2023
0 0
0
0
whill
Hello,I'm trying to utilize the following script (at the bottom) in the 'Run Script' shape in the Windows Remote Mana...
by whill New Member in Splunk SOAR 04-05-2023
0 0
0
0
bond_dev
Is there a method in which a playbook can be configured to add the tag to the artifact and not the whole container. W...
by bond_dev Engager in Splunk SOAR 04-01-2023
0 1
0
1
SP344374
For SOAR v5.3.5 there is a pre-req that /tmp has min 5Gb free. Does anyone know if the script soar-install can be pas...
by SP344374 New Member in Splunk SOAR 03-27-2023
0 1
0
1
shzhang
Going through the documentation for the prompt block, I see there is a way to send the prompt to the dynamic role "Pl...
by shzhang New Member in Splunk SOAR 03-27-2023
0 1
0
1