This app provides the ability to ingest Orange Datalake threat intel given an api token. It replaces former app Datalake Connect (https://splunkbase.splunk.com/app/5463) to be able to pull data using a query hash obtained from Datalake thus having all filters available.
(0)
Categories
Created By
Type
Downloads
Licensing
Splunk Answers
Resources