SA-IdentityAssetExtraction

Splunk Community

SA-IdentityAssetExtraction

SA-IdentityAssetExtraction
The Splunk SA-IdentityAssetExtraction add-on works with various data sources to create and populate asset and identity information. Asset and identity information within this app is integrated with Enterprise Security (ES) Identity framework to enrich and correlate events with customer-defined information. Supported sources for identity collection: - Active directory (via SA-ldapsearch) Supported sources for asset collection: - Active directory (via SA-ldapsearch) - Splunk deployment clients - AWS EC2 (via Splunk App for AWS) - ServiceNow CMDB (future) - Microsoft SCCM (future) - McAfee ePO (future) Project found at https://github.com/hire-vladimir/SA-IdentityAssetExtraction. Interested in contributing? Create a pull request or open an issue on GitHub!
0 topics and 0 replies mentioned SA-IdentityAssetExtraction in
Latest Topics
No posts to display.
Latest Replies
No posts to display.
Top Topics
No posts to display.
My Topics
No posts to display.