VIRSEC APP CONFIGURATION IN SPLUNK
Follow the below steps to install Virsec App in Splunk
-
Virsec App is added to the Splunk App Store. Download the file virsec-security-platform-threat-dashboard_100.tgz from the URL: https://splunkbase.splunk.com/app/4143/
-
Click Find More Apps
-
Navigate to Apps > Manage Apps
-
Click Install App from File
-
Upload the file virsec-security-platform-threat-dashboard_100.tgz from the local system. Click Upload
-
Click Restart Now to restart the splunk server
-
Click OK on the confirmation pop-up message
-
Click OK to display the login page
-
Log in to Splunk again with valid credentials
-
Navigate to Apps > Splunk for Virsec
-
The below page is displayed
-
Navigate to Settings > Data Inputs
-
Click HTTP Event Collector
-
Click Global Settings
-
Ensure that Enable SLL is unchecked. Click Save