Splunk
search
⌘Ctrlk
Splunk
  • README
  • Docs
  • Integrations
    • Cisco
    • Cloudflare
    • Crowdstrike Integrations with Splunk Enterprise and ES
    • JAVA for DB Connect app
    • Delinea
    • F5 BIG-IP
    • FortiGate
    • Microsoft Azure
    • Microsoft Windows
    • Integration Netflow with Splunk
    • OpenCTI
    • Splunk Mobile
    • Sysmon
    • Telegram
    • Tenable
    • Twilio SMS
    • VMware
    • Veeam
  • SPL Queries
  • Splunk Deployment
  • Splunk ES
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. Integrations

Crowdstrike Integrations with Splunk Enterprise and ES

hashtag
Connections Required (Firewall Rules)

Allow access from Splunk Search Head server to the following APIs

  • https://api.us-2.crowdstrike.com

  • https://firehose.us-2.crowdstrike.com

hashtag
Documentation

  • CrowdStrike Falcon Event Strems Add-Onarrow-up-right

  • CrowdStrike Intel Indicators Add-onarrow-up-right

  • CrowdStrike Falcon Devices Add-onarrow-up-right

  • CrowdStrike Falcon Spotlight Vulnerability Data Add-onarrow-up-right

  • CrowdStrike Scheduled Search Add-onarrow-up-right

  • CrowdStrike Falcon FileVantage Add-onarrow-up-right

  • CrowdStrike Unified Alerts Add-onarrow-up-right

  • CrowdStrike Falcon Identity Protection Add-onarrow-up-right

  • SA-CrowdStrikeIdentities for Enterprise Securityarrow-up-right

PreviousCloudflarechevron-leftNextJAVA for DB Connect appchevron-right

Last updated 1 year ago

  • Connections Required (Firewall Rules)
  • Documentation