Splunk SOAR

Splunk SOAR
Community Activity
akg12106
Hi,I am installing an App and fill out the required information under Asset Info and Asset settings. Under Asset sett...
by akg12106 New Member in Splunk SOAR 04-20-2020
0 4
0
4
rishma
Hi , I have integrated splunk with Phantom and can send the events to phantom by clicking on send to Phantom button. ...
by rishma Explorer in Splunk SOAR 04-16-2020
0 6
0
6
sam_splunk
How do I find which version of Phantom I'm running from the console/ssh? (Captured question from Phantom Community Sl...
by sam_splunk Splunk Employee Splunk Employee in Splunk SOAR 04-15-2020
0 1
0
1
sdubey_splunk
I want the below audit information from Phantom server ingested into Splunk ES and how to retrieve it?1) Login Succes...
by sdubey_splunk Splunk Employee Splunk Employee in Splunk SOAR 04-10-2020
0 2
0
2
AlexBryant
Phantom is monitoring an email box for me, and every email will have exactly one attachment: a zipped .msg file. I ne...
by AlexBryant Path Finder in Splunk SOAR 03-25-2020
0 1
0
1
robgray8430
So pretty much, -Grabs the list of all vulnerabilities from big fix and/or tenable -get subnets of the modes we will ...
by robgray8430 New Member in Splunk SOAR 03-17-2020
0 0
0
0
mkrishnan
Team, I am looking for a way to generate a summary report on cases that we have in Phantom ? Which will include case ...
by mkrishnan Engager in Splunk SOAR 03-16-2020
1 1
1
1
damode
I have created an alert in Splunk that fires off once a particular type of event is detected and also configured an a...
by damode Motivator in Splunk SOAR 03-09-2020
0 8
0
8
saikiran334
1) We have installed Phantom on Linux server and while executing playbooks in automation mode ,Our platform is gettin...
by saikiran334 Explorer in Splunk SOAR 03-04-2020
0 3
0
3
kfunayama_splun
Hi Team, Could you please help me with the questions about Counting User Seat.Also, If there is, It is happy to tell ...
by kfunayama_splun Splunk Employee Splunk Employee in Splunk SOAR 03-04-2020
0 1
0
1
ucz350
Hi, Trying to post the token and servername from the Phantomserver, into the Phantom app on the Splunk-server. This a...
by ucz350 Path Finder in Splunk SOAR 03-04-2020
0 3
0
3
ragonfly
Hello. I wonder about the configuration of phantom. Question 1.Most of company in Korea need to separated network suc...
by ragonfly New Member in Splunk SOAR 03-03-2020
0 2
0
2
kwells0479
We have been working on getting an installation of phantom running in a centos:7 docker container using rpm, but are...
by kwells0479 Explorer in Splunk SOAR 02-13-2020
0 4
0
4
dphegarty
I have a top level playbook that calls two playbooks, on that does some analysis and the second one that promotes the...
by dphegarty New Member in Splunk SOAR 02-07-2020
0 1
0
1
leomeyerovich
We have a python script that basically does "ip address -> ... python-generated splunk calls + viz api calls -> url o...
by leomeyerovich Explorer in Splunk SOAR 01-31-2020
0 0
0
0
leomeyerovich
When looking at the result of a Phantom automation, say on IP1 & IP2 + User1 & User2, we'd like to also have a table ...
by leomeyerovich Explorer in Splunk SOAR 01-31-2020
0 0
0
0
buzz_gt
Question: Are there any locking or concurrency guarantees when playbooks are operating on a container? Issue I am try...
by buzz_gt New Member in Splunk SOAR 01-31-2020
0 0
0
0
flogo
Hello, I'm using the QRadar integration on Phantom, and we can define the mapping between Phantom and QRadar.I got an...
by flogo New Member in Splunk SOAR 01-30-2020
0 1
0
1
sloshburch
Does anyone have examples of how to use Splunk Phantom to investigate and remediate phishing emails?
by sloshburch Ultra Champion in Splunk SOAR 01-30-2020
0 1
0
1
sloshburch
Does anyone have examples of how to use Splunk Phantom to hunt for threats?
by sloshburch Ultra Champion in Splunk SOAR 01-30-2020
0 1
0
1
sloshburch
Does anyone have examples of how to use Splunk Phantom to protect an EC2 group from malicious traffic?
by sloshburch Ultra Champion in Splunk SOAR 01-30-2020
0 1
0
1
sloshburch
Does anyone have examples of how to use Splunk Phantom to determine if an IP address is malicious?
by sloshburch Ultra Champion in Splunk SOAR 01-30-2020
0 1
0
1
sloshburch
Does anyone have examples of how to use Splunk Phantom to automatically contain malicious insiders?
by sloshburch Ultra Champion in Splunk SOAR 01-30-2020
0 1
0
1
sloshburch
Does anyone have examples of how to use Splunk Phantom to investigate and remediate malware infections?
by sloshburch Ultra Champion in Splunk SOAR 01-30-2020
0 1
0
1
sloshburch
Does anyone have examples of how to use Splunk Phantom to prompt an analyst to block an endpoint?
by sloshburch Ultra Champion in Splunk SOAR 01-30-2020
0 1
0
1
Get Updates on the Splunk Community!

Unlocking Unified Insights: New Gigamon Federated Search App for Splunk

In today’s data-heavy environment, organizations are caught in a data distribution dilemma. As data volumes ...

GA: New Data Management App in Splunk Platform

Streamlining Data Management: Introducing a unified experience in Splunk Managing data at scale shouldn’t feel ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...