Releases: DCSO/TIE-Splunk-App
Releases · DCSO/TIE-Splunk-App
2.0.0b1
Added
- Support for Splunk Enterprise v8, which means dropping support for Python v2.7.
We will not support any longer Python 2. - We include a
setup.py
which can be used to create a Splunk distribution using
setup.py splunkdist
. The resulting TAR or ZIP files can then be used to install
through Splunk's web interface. - The configuration of the Add-On within Splunk's web interface has been a bit
reorganized and more help has been added.
Initial Version
[1.0.0] - 2019-03-12
Added (for new features)
- Published Splunk app in version 1.0.0 at Github.com
- Splunk searches:
- [DCSO Domain IOC for ES Last 30d]
- [DCSO IPv4 IOC for ES Last 1d]
- [DCSO URL IOC for ES Last 180d]
- [DCSO Domain IOC for ES Last 180d - Extended]
- [DCSO IPv4 IOC for ES Last 180d - Extended]
- [DCSO URL IOC for ES Last 180d - Extended]
- [Domain IOC Pingback]
- [IP IOC Pingback]
- [URL IOC Pingback]
- [No Domain IOC's]
- [No IP IOC's]
- [No URL IOC]