Add-On for Lacework Alerts

Splunk Community

Add-On for Lacework Alerts

Add-On for Lacework Alerts
This is a CIM compliant TA for ingesting and search Lacework Alerts via the native Lacework HEC Integration. This TA includes index / ingest time sourcetyping of HEC based events and maps them to relevant fields to support native ES compatibility.
0 topics and 0 replies mentioned Add-On for Lacework Alerts in
Latest Topics
No posts to display.
Latest Replies
No posts to display.
Top Topics
No posts to display.
My Topics
No posts to display.