#Adding Splunk Tool?

1 messages · Page 1 of 1 (latest)

wicked rain
#

I’ve been working on a very particular use case in cyber security, was curious if you guys have Splunk or similar SIEM tools on your roadmap? Otherwise I will just create custom tool using your framework or another.

Happy to talk more.

thick bloom
wicked rain
#

Yeah totally

proud elk
#

Hey, we were integrating this and wanted to know what specific use case you had in mind for it?

wicked rain
#

Hey sorry just seeing this, I was interested in using the search API https://docs.splunk.com/Documentation/Splunk/9.3.0/RESTREF/RESTsearch. But the use case is basically to run search and return results so the agent can reason over them. Same idea as having agent search SQL query, if it encounters error, correct and try again, return results etc.