The Splunk Add-on for Phantom is compatible with ITSI version 4.4.0 and later.
For detailed documentation, see About the Content Pack for Monitoring Phantom as a Service
Technical Add-on for integrating Phantom logs with Splunk and ITSI to provide complete visibility into Phantom's operation. For installation information, see https://docs.splunk.com/Documentation/ITSICP/current/Config/AboutPhantom
Version 1.0.2 adds the following:
- Support for the latest Splunk Enterprise and Phantom versions
- Python 3 support for logs
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.