Splunk Connection
Requirements
Creating a Splunk Connection
Navigate to Splunk integrations by clicking the Splunk link on the integrations page
Begin creating a BluBracket Splunk connection by clicking the + CONNECTION button
Enter a unique name for the connection.
Generate an integration token following the Splunk docs
Copy your integration token and paste it into the token field.
Enter the port number (default is 8088).
If you are testing with a free trial, check the optional box.
Enter the base url of your splunk account.
Click TEST & SAVE.
Now you’re ready to create subscriptions for this connection and start seeing BluBracket incidents in Splunk.