ZachChristensen28 / TA-crowdstrike-identities

The CrowdStrike Falcon Identity Protection Add-on for Splunk Add-on allows ingestion of the CrowdStrike identity data into Splunk enabling the data to be used with other Splunk Apps, such as Enterprise Security.
https://splunk-ta-crowdstrike.ztsplunker.com/
Other
0 stars 0 forks source link

Ingest from SQS bucket in AWS #30

Open declan727 opened 6 months ago

declan727 commented 6 months ago

Description

I am currently ingesting other CS data from an SQS AWS Bucket not directly from CS can the app do that or does it need to directly pull this data from CS?

Thank you

Related links

ZachChristensen28 commented 6 months ago

Right now, it just pulls directly from CrowdStrike.