Splunk SOAR

Splunk SOAR
Community Activity
sdubey_splunk
Warm-standby failover is not working as the filesystem size of /opt/phantom/db is more than /tmp/. How to fix it?
by sdubey_splunk Splunk Employee Splunk Employee in Splunk SOAR 07-17-2019
0 1
0
1
mdundas
Hello all, I am attempting to install Splunk Phantom 4.5 (not the Phantom App for Splunk) on a CentOS 7.6 VM on ESXi....
by mdundas Explorer in Splunk SOAR 06-24-2019
1 13
1
13
mtrossman
Anyone running into an issue where process filters(filters/decisions) will randomly lose assigned values causing play...
by mtrossman New Member in Splunk SOAR 06-20-2019
0 0
0
0
impsk
Hello, is there a way to remove all events from phantom
by impsk New Member in Splunk SOAR 06-18-2019
0 2
0
2
rsantoso_splunk
There could be tens to hundreds of containers that would like to be deleted. What is the best way to delete these?
by rsantoso_splunk Splunk Employee Splunk Employee in Splunk SOAR 06-16-2019
0 1
0
1
rsantoso_splunk
Would like to ask on how can we determine if the System Health being shown is still within threshold and will not aff...
by rsantoso_splunk Splunk Employee Splunk Employee in Splunk SOAR 06-16-2019
0 1
0
1
jamescannalte
I'm attempting to use the "post data" action of the Splunk app in Phantom. I'm fairly certain that I've correctly con...
by jamescannalte Engager in Splunk SOAR 06-14-2019
0 1
0
1
noysherer
I work in an environment where there are different projects for different developers. I want each project to receive ...
by noysherer Explorer in Splunk SOAR 05-28-2019
1 1
1
1
littie
Does anyone know what is the Phantom subscription? Previously, a free version was limited to 10 playbook or 25 events...
by littie New Member in Splunk SOAR 05-24-2019
0 2
0
2
borisk95
There was an error adding the server configuration. Verify server's 'Allowed IPs' and authorization configuration. St...
by borisk95 New Member in Splunk SOAR 05-11-2019
0 0
0
0
sujana96
Hi,I am totally new to Splunk and phantom. Please help me with the below idea.I want to create a Phantom playbook tha...
by sujana96 New Member in Splunk SOAR 04-14-2019
0 0
0
0
cochma
Hi, there I am sorry for the basic questions.Please tell me about the following. What is the definition of Playbook t...
by cochma New Member in Splunk SOAR 03-17-2019
0 1
0
1
rsantoso_splunk
I am using App Version 2.5.23: Go to the app and click on “new saved search Export” I have created the saved search...
by rsantoso_splunk Splunk Employee Splunk Employee in Splunk SOAR 03-11-2019
0 1
0
1
rsantoso_splunk
[ Splunk deployment/architecture ] Splunk Enterprise: 7.2.0 / Standalone / CentOS 7.4 Phantom App for Splunk:2.6.22 h...
by rsantoso_splunk Splunk Employee Splunk Employee in Splunk SOAR 03-06-2019
0 1
0
1
hiahiahia
I've downloaded Splunk 7 and installed the Phantom app for Splunk. But, I found out that my Phantom app is different ...
by hiahiahia Explorer in Splunk SOAR 12-13-2018
0 2
0
2
andreasbischoff
Hi, trying to get Palo Alto alerts for critical, high and medium threat alerts from Splunk into Phantom. In phantom...
by andreasbischoff Explorer in Splunk SOAR 12-03-2018
0 2
0
2
renjujacob88
Hi Splunkers, We are trying to forward the events to Phantom via data model export function. When we click on save an...
by renjujacob88 Path Finder in Splunk SOAR 11-27-2018
0 0
0
0
claudiocruz
I'm trying to integrate Splunk ES 5.1 running on Splunk Core 7.1. I have the Phantom app configured, connected to the...
by claudiocruz Engager in Splunk SOAR 11-20-2018
0 2
0
2
gf13579
I'm working my way through the phantom appdev tutorial and can't get past an annoying issue when attempting to compil...
by gf13579 Communicator in Splunk SOAR 11-12-2018
0 7
0
7
rplas
Splunk Version: 7.1.2Phantom App for Splunk Version: 2.5.23 My alerts are being triggered successfully, but there is ...
by rplas Explorer in Splunk SOAR 11-05-2018
3 1
3
1
ankithreddy777
How to find out what SIM model is established for the security logs in Splunk?
by ankithreddy777 Contributor in Splunk SOAR 01-12-2017
0 3
0
3
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Design, Compete, Win: Submit Your Best Splunk Dashboards for a .conf26 Pass

Hello Splunkers,  We’re excited to kick off a Splunk Dashboard contest! We know that dashboards are a primary ...

May 2026 Splunk Expert Sessions: Security & Observability

Level Up Your Operations: May 2026 Splunk Expert Sessions Whether you are refining your security posture or ...