IntelOwl
IntelOwl copied to clipboard
[Analyzer] Splunk analyzers [requires commercial account]
Allows Lookups on Splunk. Something like what was done here
It would probably require to ask for a developer license to do proper testing
Here are the two options for licences to use for development.
- Splunk Enterprise Developer licence
- Available to anyone
- Development purposes only
- 10G of daily ingest
- https://dev.splunk.com/enterprise/dev_license
- Splunk Personalised Dev/Test licence
- Need to be an existing Splunk customer to access
- 50G of daily ingest
- https://www.splunk.com/en_us/resources/personalized-dev-test-licenses/faq.html
Thanks for the details. If you are interested in helping us to develop this feature, feel free to do it. We can cooperate and find a solution together.