Splunk Enterprise Security

DHS AIS and CISCP taxii feeds - setup

robert_miller
Path Finder

Has anyone been able to configure the taxii feeds for AIS and CISCP in Enterprise Security? In the arguments, I have to provide a cert_file and key_file. DHS already provided me with their certs, but I am not certain how to put it all together.

0 Karma

jimmytpowers
Path Finder

Were you ever able to get success with DHS TAXII feeds?

0 Karma

robert_miller
Path Finder

I could never get it to work. I ended up having to use the FLAREclient.

0 Karma
Get Updates on the Splunk Community!

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...