Fix
: Issue with the trigger parameter for rerun searches not taken into account correctlySee the full release notes directly on Github: https://github.com/LetMeR00t/TA-detection-backfill/releases/tag/v1.5.2
Fix
: Issue with wrong usage of warn/warning function and log typeFeature
: Provide a way to filter on audittrail logs by filtering on the hostsPerf
: Optimize searches CPU/memory usageRefactor
: Remove the possibility to dispatch a healthcheck job as an ad-hoc searchRefactor
: Move the Healthcheck dashboard monitoring to Dashboard ClassicSee the full release notes directly on Github: https://github.com/LetMeR00t/TA-detection-backfill/releases/tag/v1.5.1
Feature
: Support for using relative times when preparing rerun jobsFeature
: Added the capability to do SPL injection code during rerun jobsFeature
: Added the capability to perform healthcheck jobs used to rerun searches after a certain period of time (backlog based)Feature
: Added the capability to perform advanced monitoring for healthcheck jobs in order to get deep results analysis (help to know what have changed in the results between the original and the healthcheck job)Feature
: Added the possibility to specify the trigger action (True/False) in the lookup for each savedsearch job instead of a global parameter in the custom alert actionFeature
: Added the ability to set the dispatch TTL to easily manage the retention/expiration time of job results.See the full release notes directly on Github: https://github.com/LetMeR00t/TA-detection-backfill/releases/tag/v1.5
Fix
: Support lookup replication by updating the lookup through the Splunk REST APISee the full release notes directly on Github: https://github.com/LetMeR00t/TA-detection-backfill/releases/tag/v1.4
Refactor
: Support cloud vetSee the full release notes directly on Github: https://github.com/LetMeR00t/TA-detection-backfill/releases/tag/v1.3
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.