Default Version 2.0.0
March 22, 2020
March 22, 2020
Splunk Enterprise
Platform Version: 9.4, 9.3, 9.2, 9.1, 9.0
Log in to rate this app
Deprecated by https://splunkbase.splunk.com/app/4941/ ---- This application allows to: - acquire ActiveTrust / BloxOne Threat Defense Cloud logs using REST API - filter it efficiently with full drill down support based on the time, threat property, threat class, source IP, domain name, query type and much more - get context from Infoblox Dossier threat intelligence. Mandatory requires ActiveTrust / BloxOne Threat Defense Cloud Optionally requires Dossier for threat intelligence
Log in to report this app listing.