Splunk Alert Action for SAP® Enterprise Threat Detection is a Splunk App that provides a Custom Alert Action for sending alerts from Splunk to an SAP® Enterprise Threat Detection deployment. A Setup UI is provided to configure the remote SAP® Enterprise Threat Detection server and Console Dashboard for debugging.
The alert payload specification sent from Splunk can be found here: $SPLUNK_HOME/app/sap_enterprise_threat_detection/ALERT_PAYLOAD.spec
Splunk logs all SAP® Enterprise Threat Detection alert action attempts. Within Splunk Alert Action for SAP® Enterprise Threat Detection, click on the “Console” link within the navigation. This will give you a summary of all transaction including errors over time.
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.