- CheckMates
- :
- CloudMates Products
- :
- Cloud Security Posture Management
- :
- New CloudGuard Dome9 Integration: Splunk
Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page

Employee Alumnus
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
2019-09-10
03:23 AM
New CloudGuard Dome9 Integration: Splunk
Dome9 now supports HTTP based integration with Splunk, allowing to send JSON-formatted alerts produced by the Compliance Engine to easily to a Splunk HTTP Events Collector.
Splunk is a data collection, monitoring, and analysis system. Many Dome9 customers use it as their Security information and event management (SIEM) solution.
The new integration is very easy to set. On the Dome9 the integration requires setting up a "notification policy" that includes HTTP connector, and selecting the "Splunk - JSON" format.
On Splunk the integration requires setting up an "HTTP Event Collector".
A user guide for the integration is available in the Dome9 help guide.
For more on Dome9 Alerts and Notifications see here.
Information on the Splunk HTTP Event Collector is available in Splunk Dev.
Offir Zigelman, Dome9 Product Team Lead
0 Replies
