Splunk for Attack Surface Intelligence: Getting Started

Table of Contents

Introduction

The Recorded Future Attack Surface Intelligence (ASI) Integration with Splunk allows you to collect and analyze your attack surface data within the Splunk environment as you would natively within the Recorded Future Portal.  It is a Technology Add-on that will query for your latest project data with appropriate visuals and actions.

Prerequisites

  • Recorded Future Connect API Token

Installation Steps

Please get in touch with your Recorded Future Customer Service Manager to obtain the latest installation package.

Installation Location
Once you have obtained the package, install the name of the app – located within a Linux environment within the /etc/apps/ directory of your Splunk directory – isTA-recorded-future-attack-surface-intelligence-add-on-for-splunk. The “TA” prefix stands for “Technology Add-on” and the app is installed on Splunk’s search head.

Support

For integration support please contact support@recordedfuture.com.

 

This content is confidential. Do not distribute or download content in a manner that violates your Recorded Future license agreement. Sharing this content outside of licensed Recorded Future users constitutes a breach of the terms and/or agreement and shall be considered a breach by your organization.
Was this article helpful?
0 out of 0 found this helpful

Articles in this section

See more