I've recently moved from an on-prem SplunkSOAR to the SaaS-based SOARCloud and am wondering if there's an equivalent to delete_containers.py script for Cloud? I'm aware we can't run b...
We have Splunkcloud and SOARcloud in our environment. We want to integrate SOAR audit log in to Splunkcloud. We have tried with "Splunk App for SOAR" app. App have inbuilt feature of index c...
Hi Splunkers, we have to connect our On Prem SOAR Solution (Palo Alto Cortex) to a SplunkCloud instance. The dedicated SOAR integrations use API and ask: Username Password URL/Hostanem/IP A...
Hello,
We currently utilize the Windows Defender ATP v 3.6.0 app in our SplunkSOARCloud instance. I've discovered that the 'run query' action utilizes an outdated advancedqueries api e...
Hi Team,
I wanted to know whether Splunk License Monitoring Console will show license usage report for all Splunk deployed product or only for Enterprise.
Also Monitoring Console and Cloud M...
Is it possible to run a playbook on demand, meaning a manual trigger by an analyst such as clicking a playbook during a workbook step? I have a use case where I want to run a playbook, but only from ...
Hi at all,
I have to take logs from MobileIron Cloud into SplunkCloud.
I download the MobileIron Cloud App, but it is only for Splunk On premise and it doesn't pass the check on SplunkCloud....
How can we send a file as input to an API endpoint from custom spl commands developed for both Splunk Enterprise and SplunkCloud, ensuring the API endpoint returns the desired enrichment details?