GitHub - splunk/SA-SentinelOneDevices: Allows SentinelOne device information to be used with Splunk Enterprise Security.

SA-SentinelOneDevices

Splunk Subreddit Splunk Slack Splunk Community

This supporting add-on comes with prebuilt content for SentinelOne device data to be easily used with Splunk Enterprise Security's asset database.

Important

This supporting add-on is only intended to work with Splunk Enterprise Security deployments

About

Info Description
SA-SentinelOneDevices 1.0.2 - Splunkbase
Splunk Enterprise Security Version (Required) 7.x | 6.x
SentinelOne App For Splunk (Required) 5.1.x
Add-on has a web UI No, this add-on does not contain views.

Disclaimer

This Splunk Supporting Add-on is not affiliated with SentinelOne, Inc. and is not sponsored or sanctioned by the SentinelOne team. Please visit https://www.sentinelone.com/ for more information about SentinelOne.