The Splunk Add-on for Qualys allows a Splunk® Enterprise administrator to collect QualysGuard vulnerability detection data and KnowledgeBase vulnerability signatures via the Qualys REST API. Splunk Enterprise administrators can consume the data using the pre-built dashboard panels included with the add-on or work with the raw events directly to examine the distribution of vulnerabilities in the production environment. This add-on provides the inputs and CIM-compatible knowledge to use with other Splunk Enterprise apps, such as the Splunk App for Enterprise Security and the Splunk App for PCI Compliance.
(0)
Categories
Created By
Type
Downloads
Licensing
Splunk Answers
Resources