Skip to main content
Warning
This app is archived. App archiving documentation
TA-dmarc add-on for Splunk app icon

TA-dmarc add-on for Splunk

TA-dmarc add-on for Splunk supports ingesting DMARC XML aggregate reports from an IMAP/POP3 mailbox or local directory with mitigations against:Built by Jorrit Folmer
splunk product badge

Default Version 4.1.1

October 21, 2022

Compatibility

Splunk Enterprise

Platform Version: 9.4, 9.3, 9.2, 9.1, 9.0

CIM Version: 5.x, 4.x, 3.x

Rating
5
(2)

Log in to rate this app

Support
Archived Add-on
Ranking

#20 in IT Operations

#22 in Security, Fraud & Compliance

TA-dmarc add-on for Splunk supports ingesting DMARC XML aggregate reports from an IMAP/POP3 mailbox or local directory with mitigations against: * ZIP bombs * gzip bombs * various XML attack vectors like billion laughs, quadratic blowup, external entity expansion and so on * malformed reports * false reports (alpha)