Skip to main content
Proofpoint - ET Splunk TA app icon

Proofpoint - ET Splunk TA

The ET Splunk Technical Add-on (ET-TA) seamlessly integrates the acclaimed Emerging Threats Intelligence feed into Splunk, and provides predefined macros and lookups to enrich and search any log that Splunk can parse with ET Intelligence reputation data. The ET-TA installs in seconds, and empowers the Splunk admin to create custom searches, dashboards, panels, pivots, reports, and alerts enriched with ET intelligence data. Built by Proofpoint Splunk Integrations
splunk product badge

Default Version 2.5.0

May 6, 2025

Compatibility

Splunk Enterprise

Platform Version: 9.4, 9.3, 9.2, 9.1, 9.0

CIM Version: 5.x, 4.x, 3.x

Rating
4
(5)

Log in to rate this app

Support
Not Supported

The ET Splunk Technical Add-on (ET-TA) seamlessly integrates the acclaimed Emerging Threats Intelligence feed into Splunk, and provides predefined macros and lookups to enrich and search any log that Splunk can parse with ET Intelligence reputation data. The ET-TA installs in seconds, and empowers the Splunk admin to create custom searches, dashboards, panels, pivots, reports, and alerts enriched with ET intelligence data. Features: • Automatically Downloads, Installs, and Updates ET Intelligence reputation data. • Predefined Macros and Lookups to enrich any log containing IP/Domain fields that Splunk can parse with ET reputation data. • Support for Splunk Search, Dashboard, Panels, Pivots, Reports, and Alerts leveraging ET reputation data. • Splunk Adaptive Response Framework Support to automatically enrich IOCs with additional ET Intelligence data • Splunk Cloud Support