Create Splunk Notable Event Short ID.
SplunkScripts
- Details
- Content
- Dependencies
- Version History
Splunk helper scripts.
Automations
Name | Description |
---|---|
Splunk_ShortID | |
SplunkCIMFields | Convert Splunk CIM Fields Dynamic Into Fields Value. |
Automations
Name | Description |
---|---|
Splunk_ShortID | Create Splunk Notable Event Short ID. |
SplunkCIMFields | Convert Splunk CIM Fields Dynamic Into Fields Value. |
Required Content Packs (1)
Pack Name | Pack By |
---|---|
Base | By: Cortex XSOAR |
Optional Content Packs (1)
Pack Name | Pack By |
---|---|
Splunk | By: Cortex XSOAR |
All level dependencies (1)
Pack Name | Pack By |
---|---|
Base | By: Cortex XSOAR |
1.1.0 - 6617721 (October 16, 2023) Related pull requests:
- 30101
- 29830
Download
Scripts
SplunkCIMFields
- Breaking Change: The pack name has changed from "SplunkCIMFields" to "SplunkScripts". This change will affect any playbook or integration configuration that references the old pack name.
- Updated the Docker image to: demisto/python3:3.10.13.75921.
New: Splunk_ShortID
- New: Create Splunk Notable Event Short ID. (Available from Cortex XSOAR 6.0.0).
- 30101
- 29830
Download
1.0.0 - 7740378 (August 24, 2021) Download
Convert Splunk CIM Dynamic Fields into their values.
Example:
Brute Force Attack On $src$ transformed into Brute Force Attack On 192.168.100.254
PLATFORMS
Cortex XSOARCortex XSIAM
INFO
Supported By | Community | |
Created | August 24, 2021 | |
Last Release | November 20, 2024 |