Splunk Search

About the ExtraHop configure

tianshichuan123
New Member

I want to use the ExtraHop,but i Can not configurat the ExtraHop,Can you please share the configuration steps for ExtraHop?My Email is shermantian@163.com. Thank you!!

Tags (1)
0 Karma

canalesjac
Path Finder

The ExtraHop Splunk App may not be what you are most interested in. If what you want is to build dashboards or reports on ExtraHop wire data, you need to configure Splunk as your Syslog SIEM entry in ExtraHop. You can then build triggers to send custom fields and values to Splunk.

Check out this article on ExtraHop Forum
ExtraHop To Splunk Article

ExtraHop Splunk Dashboard

0 Karma

tbragin
Explorer

Hi Sherman, Thank you for your interest in ExtraHop. Configuration instructions and other help is available in our customer forum at https://forum.extrahop.com. You will be assigned a forum login after you are approved for the ExtraHop free trial download.

tbragin
Explorer

If you're a current ExtraHop customer, you can email support@extrahop.com for your login. If not, you can get started with the free ExtraHop Discovery Edition. Once you download it, the login to the forum will be created for you automatically: http://www.extrahop.com/products/platforms/extrahop-discovery-edition/

0 Karma

tianshichuan123
New Member

Hi tbragin,Thank you for your answer.but at https://forum.extrahop.com,i can not create a new account.By the way,what is the Product key,and the Product key need to buy?Thank you.

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...