Demisto App for Splunk helps in tracking Splunk to Demisto incident creation.
1) Add-on app, which helps in creating incident into Demisto
2) Main app for visualizing Splunk to Demisto Integration.
This App setup is same for both distributed and standalone environment:
The main app dashboard can take some time before the data is returned which will populate some of the panels. A good test is to run following query
search `demisto_get_index` source = demisto
If you don't see these sourcetypes, run following query to find out if any alert with demisto action was executed.
index="_internal" source = *scheduler* alert_actions="demisto"
Customers can file issues by logging into Demisto support portal (https://support.demisto.com).
Documentation on our support process is available in the support portal.
-- A feature to send all notable events from ES to Demisto Platform as Incidents.
-- Minor Bug Fixes for the Dashboards
Changes related to Branding of the Demisto
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps and add-ons from Splunk, our partners and our community. Find an app or add-on for most any data source and user need, or simply create your own with help from our developer portal.