For setup information, please visit the integration page here: https://support.cyera.io/hc/en-us/articles/23160972230935-Splunk-Integration
Added functionality for full datastore synchronization.
Default Behavior (Unchecked): Incremental mode - only retrieves new/changed datastores based on checkpoints
Enabled (Checked): Full pull mode - retrieves ALL datastores on every run, regardless of date
Validation: If enabled, the interval must be at least 86400 seconds (1 day) to prevent excessive API calls
Bug Fix
Updated to utilize higher limits for endpoint requests. Events and Datastores retrieval should be improved.
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.