PAVO Security App For Splunk allows a Splunk Enterprise Security analyst or other user to gather curated searches and news items that are relevant to Security. This is a subscription based service.
This App provides the following scripts:
[APL029-419] - Add lookup for recommended apps
[SAFS-70] - Add drilldown to data model counts on Overview page
[SAFS-78] - Add DNS app to menu
[SAFS-77] - Add Endpoint app to menu
[SAFS-7] - Provide apl.conf.spec
[SAFS-16] - EULA bugs
[SAFS-19] - Fix Account Validators for email and full_email
[SAFS-31] - Search Detail link not working
[SAFS-37] - Error message immediately after creating account
[SAFS-6] - Documentation Update
[SAFS-33] - Remove Giant PEACOCK image from Overview screen
[SAFS-34] - Change API Not Configured to a more user-friendly message
[SAFS-44] - Add final icon/image to Overview page
[SAFS-49] - Recommended Apps panel in Overview Tab: Display user friendly app name, not internal app name
[SAFS-53] - Account Status Modal - Email Verification
Version 0.9.2 of PAVO Security App For Splunk is compatible with:
|Splunk Enterprise versions||8.0, 7.3, 7.2, 7.1, 7.0|
|Platforms||Splunk Enterprise, Splunk Cloud|
Access questions and answers specific to PAVO Security App For Splunk at https://answers.splunk.com . Be sure to tag your question with the App.
Support Email: None
Support Offered: Splunk Answers, Community Engagement
Because this App runs on Splunk Enterprise, all of the Splunk Enterprise system requirements apply.
Download PAVO Security App For Splunk at https://splunkbase.splunk.com/app/3993/.
Follow these steps to install the app in a single server instance of Splunk Enterprise:
Deploy as you would any App, and restart Splunk.
Navigate to the Content view.
Configure an Account.
When first accessing the PAVO Security App for Splunk, you must agree to the EULA.
Click either offline or online mode.
If online, enter your Name, email, and a password. These will create an account at the portal.
Please visit the portal for any billing needs.
The PAVO Security App For Splunk contains the following lookup files.
PAVO Security App For Splunk does not include an event generator. This allows the product to display data, when there are no inputs configured.
Summary Indexing: No
Data Model Acceleration: No
Report Acceleration: No
Version 0.9.2 of PAVO Security App For Splunk incorporates the following Third-party software or third-party services.
Fixes to App Configuration Page
Updated overview page. Removed specific items.
Splunk AppInspect evaluates Splunk apps against a set of Splunk-defined criteria to assess the validity and security of an app package and components.
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps and add-ons from Splunk, our partners and our community. Find an app or add-on for most any data source and user need, or simply create your own with help from our developer portal.