SecKit Windows Assets Add-on for Splunk Enterprise Security
SecKit Windows Assets Add-on for Splunk Enterprise Security
This plugin to the SecKit Windows Add-on extracts feature rich asset and identity data from Active Directory using the ActiveDirectory input of Splunk add on for Windows. Using build in lookup and user definable macros you can build a reliable repeatable process for defining assets and identities.
Version 2.x is considered stable
Version 3.x is appropriate for New implementations with experienced administrators