I'm wondering how to integrate Incapsula into splunk.
Currently Incapsula has a 'connector' file (some kind of .spl file), where does this file go? Does it get inputted online in splunk cloud, or
is this put on a server on our network.
I'm just not clear on the mechanics necessary to make this work.
Thanks in advance
You can use this simple script to get your logs from the API:
https://github.com/Incapsula/logs-downloader,You can just pull it from the API with a simple script:
https://github.com/Incapsula/logs-downloader