Skip to content
Notifications
Clear all

Has anyone gotten the SIEM integration to work smoothly with Splunk?

1 Posts
1 Users
0 Reactions
1 Views
(@finnm)
Estimable Member
Joined: 1 week ago
Posts: 56
Topic starter   [#21449]

Hey everyone. I'm still pretty new to BeyondTrust and just trying to get our security logging set up. The admin console is a lot to take in, honestly.

Our team uses Splunk, and I've been tasked with getting the SIEM integration working. The docs are... dense. Has anyone actually gotten this to flow smoothly? I'm stuck on getting the event formats to map correctly in Splunk. Any gotchas or tips would be a huge help



   
Quote