All Apps and Add-ons

Which port will be used to integrate Tanium and Splunk using "Tanium Splunk Application" add-on, inorder to get the data from Tanium to Splunk Enterprise?

srideviv
Engager

Which port will be used to integrate Tanium and Splunk using "Tanium Splunk Application" add-on, inorder to get the data from Tanium to Splunk Enterprise?

0 Karma

sumanssah
Communicator

As per details from Tanium website, you can do the integration with Syslog and send data to 514 port of Splunk.

I assume you already started and invested time with Tanium-Splunk integration, would suggest checking below-mentioned URL (which may be helpful with your integration)

https://docs.tanium.com/connect/connect/siem.html

0 Karma

srideviv
Engager

Thank u for the response. I tried using tcp:9997 and it worked. 🙂

0 Karma
Get Updates on the Splunk Community!

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

Splunk is officially part of Cisco

Revolutionizing how our customers build resilience across their entire digital footprint.   Splunk ...

Splunk APM & RUM | Planned Maintenance March 26 - March 28, 2024

There will be planned maintenance for Splunk APM and RUM between March 26, 2024 and March 28, 2024 as ...