Splunk Integration
Forward Ethiack findings and events to Splunk for centralized security monitoring and analysis.
The Splunk integration forwards Ethiack findings directly to your Splunk instance, enabling centralized visibility and analysis alongside the rest of your security data.
Setting up the integration
In the Ethiack Portal, navigate to Settings and select the Splunk option under Integrations. Click Configure and provide the following details:
- Splunk URL — the URL of the Splunk instance where findings should be sent.
- Splunk Token — the authorisation token used to write to that Splunk instance.
Once saved, all findings with a severity of Medium or higher will be automatically exported to the configured Splunk instance.