OpenCTI または OpenAEV プラットフォームを 30 日間お試しいただけます。 無料トライアル
XTMハブ by フィリグラン
サインアップ

[SIEM] Splunk Feed

Detection & Response Enablement
A picture of RG9jdW1lbnQ6MDBlZWQ3NWUtMzIwZi00ZmVjLTg5YTAtZjk1MmZiMGY0NDlk
A picture of RG9jdW1lbnQ6MWQwMDYxOWYtNzRiZS00ZmY1LWFiYWMtY2Y1N2EzZmMzNTg3

概要

This dashboard shows a similar widget field and layout to the widgets in the OpenCTI Splunk Add-on as published in Splunkbase

  • Note: The default timerange on this dashboard is "Last Month" - please reset this after loading.

This dashboard has a layout very similar to the OCTI Splunk app, allowing the OpenCTI user to quickly check the nature of IOCs being sent to Splunk, as well as to compare counts on both Splunk and OpenCTI to verify the sync is operating correctly.

Note that this dashboard operates on the assumption that your Splunk Stream uses the same filter as the dashboard widgets! For the dashboard, this is Type = Indicator AND label = send_to_splunk. If you have a different filter on your Splunk stream, you should edit these

基本情報

Filigran
Damian Skeeles
2026年2月23日
6.6.17
100+
40+

    XTM Hubの運営にはクッキーを使用しています。必須のクッキーは常に有効になっていますが、オプションのクッキー(機能、分析、マーケティング)は、お客様の同意を得た上で使用されます。「クッキー設定」から、いつでも「すべて受け入れる」、「すべて拒否する」、または設定を管理することができます。