Configure: Splunk Webhook
Data types available from Splunk Webhook
- Select data types (source supported data types will automatically be available in the UI; ensure Destination can ingest chosen data types
- Collector (Source Mediator)
- Event Data Type (Source)
- Event Data Type (Source)
- Distributors (Destination Mediator)
- Event Data Type (Destination)
- Event Data Type (Destination)
- Select Continue
Configure Source Events
- Specify the field mappings from the splunk query results to what is needed in the destination.
Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*