We have applied modifications to the ETP 2025 release to the app.
Advanced Threat V1 is only available until 2025.
For compatibility with the existing system, it works as V1 even after updating the app. If you want to apply V2, check the V1 of the existing Input again and apply it, and if you uncheck it again, collect it as Alerts V2.
Audit log error fixed
Python Libary update
minor bugs fix.
Now, it supports outbound traffic collection.
Users can now choose FireEye IAM and Trellix IAM.
The default splunk event timezone has been changed to KST.
Please refer to README.txt to change to your time zone.
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.