Info | Description |
---|---|
SA-SentinelOneDevices | 1.0.2 - Splunkbase |
Splunk Enterprise Security Version (Required) | 7.x | 6.x |
SentinelOne App For Splunk (Required) | 5.1.x |
Add-on has a web UI | No, this add-on does not contain views. |
What's Changed
Version 1.0.2 by @ZachTheSplunker in #38
- Added managed configurations for Splunk Enterprise Security to control retention of lookup file --> Schedule Search
- Deprecating use of the search macro "sa_sentinelone_retention" and the corresponding saved search.
Full Changelog: v1.0.1...v1.0.2