Menlo Security Add-on for Splunk

Apps & Add-ons

Menlo Security Add-on for Splunk

Menlo Security Add-on for Splunk
1. This addon currently covers the menlo security audit log and web logs that is collected via REST API. 2. The following is the sourcetypes used by this addon: a) menlosecurity:audit:json is used for the audit log. b) menlosecurity:web:json is used for the web log. [version 1.0.3] - Increased collection hard limit from 10000 events to 100000 events. [version 1.0.2] - Increased collection hard limit from 1000 events to 10000 events. [version 1.0.1] - due to no data available in the JSON file result, checkpointing has been removed. Instead the input will run every 5 minutes to return data of the past 5 minutes.
1 topic and 0 replies mentioned Menlo Security Add-on for Splunk in View all 1
Latest Topics
Latest Replies
No posts to display.
Top Topics
My Topics
No posts to display.