2019-09-10 03:23 AM
New CloudGuard Dome9 Integration: Splunk
Dome9 now supports HTTP based integration with Splunk, allowing to send JSON-formatted alerts produced by the Compliance Engine to easily to a Splunk HTTP Events Collector.
The new integration is very easy to set. On the Dome9 the integration requires setting up a "notification policy" that includes HTTP connector, and selecting the "Splunk - JSON" format.
On Splunk the integration requires setting up an "HTTP Event Collector".
A user guide for the integration is available in the Dome9 help guide.
For more on Dome9 Alerts and Notifications see here.
Information on the Splunk HTTP Event Collector is available in Splunk Dev.
Offir Zigelman, Dome9 Product Team Lead