Palo Alto Networks App for Splunk
Copyright (C) 2012-2016 Palo Alto Networks Inc. All Rights Reserved.
- App Homepage: https://splunkbase.splunk.com/app/491
- Authors: Brian Torres-Gil, Paul Nguyen, Garfield Freeman - Palo Alto Networks
- App Version: 6.1.0
- Required Add-on (TA) Version: Splunk_TA_paloalto 6.1.0
Palo Alto Networks and Splunk have partnered to deliver an advanced security reporting and analysis tool. The collaboration delivers operational reporting as well as simplified and configurable dashboard views across Palo Alto Networks family of next-generation firewalls.
Palo Alto Networks App for Splunk leverages the data visibility provided by Palo Alto Networks next-generation firewalls and endpoint security with Splunk's extensive investigation and visualization capabilities to deliver an advanced security reporting and analysis tool. This app enables security analysts, administrators, and architects to correlate application and user activities across all network and security infrastructures from a real-time and historical perspective. Complicated incident analysis that previously consumed days of manual and error-prone data mining can now be completed in a fraction of the time, saving not only manpower but also enabling key enterprise security resources to focus on critical, time-sensitive investigations.
Installation and Getting Started: http://splunk.paloaltonetworks.com/getting_started.html
Release Notes: http://splunk.paloaltonetworks.com/release-notes.html
Install from Git
From the directory
$SPLUNK_HOME/etc/apps/, type the following command:
git clone https://github.com/PaloAltoNetworks/SplunkforPaloAltoNetworks.git SplunkforPaloAltoNetworks