Collection of Dashboards for Threat Hunting and more!
-
Updated
Oct 17, 2020
Collection of Dashboards for Threat Hunting and more!
Splunk custom alert action for sending messages to Slack channels
This TA takes Suricata5 data from your port mirrored Suricata server and makes it readable within Splunk. See Cheatsheets on how to setup a Suricata Port Mirrored Server
Allows for a short and detailed message to be specified for each alert. Splunk tokens can be specified as part of the custom messages.
Add a description, image, and links to the splunk-alerts topic page so that developers can more easily learn about it.
To associate your repository with the splunk-alerts topic, visit your repo's landing page and select "manage topics."