All Apps and Add-ons

Which port will be used to integrate Tanium and Splunk using "Tanium Splunk Application" add-on, inorder to get the data from Tanium to Splunk Enterprise?

srideviv
Engager

Which port will be used to integrate Tanium and Splunk using "Tanium Splunk Application" add-on, inorder to get the data from Tanium to Splunk Enterprise?

0 Karma

sumanssah
Communicator

As per details from Tanium website, you can do the integration with Syslog and send data to 514 port of Splunk.

I assume you already started and invested time with Tanium-Splunk integration, would suggest checking below-mentioned URL (which may be helpful with your integration)

https://docs.tanium.com/connect/connect/siem.html

0 Karma

srideviv
Engager

Thank u for the response. I tried using tcp:9997 and it worked. 🙂

0 Karma
Get Updates on the Splunk Community!

Routing logs with Splunk OTel Collector for Kubernetes

The Splunk Distribution of the OpenTelemetry (OTel) Collector is a product that provides a way to ingest ...

Welcome to the Splunk Community!

(view in My Videos) We're so glad you're here! The Splunk Community is place to connect, learn, give back, and ...

Tech Talk | Elevating Digital Service Excellence: The Synergy of Splunk RUM & APM

Elevating Digital Service Excellence: The Synergy of Real User Monitoring and Application Performance ...