ycliper

Популярное

Музыка Кино и Анимация Автомобили Животные Спорт Путешествия Игры Юмор

Интересные видео

2025 Сериалы Трейлеры Новости Как сделать Видеоуроки Diy своими руками

Топ запросов

смотреть а4 schoolboy runaway турецкий сериал смотреть мультфильмы эдисон
Скачать

SIEM SPLUNK | GuardDuty | AWS GuardDuty Integration with Splunk via AWS S3 Bucket

Автор: CyberSatrix

Загружено: 2020-07-21

Просмотров: 5224

Описание: Hello Everyone, In this tutorial, I have explained one of the ways through which AWS Guard Duty finding can be integrated with Splunk. Initially, the AWS GuardDuty findings are sent to AWS S3 bucket which is encrypted using KMS (Key Management Service). Later, these findings are poll by Splunk from S3 bucket with the help of Splunk Add-On for AWS and AWS IAM account. I have divided the process into the below steps, which have been explained clearly in this tutorial.

03:40 Step 1 - Create IAM Policy with required permissions
08:01 Step 2 - Create AWS IAM User
09:42 Step 3 - Create a KMS key for data encryption
11:55 Step 4 - Configure GuardDuty to export guard duty findings to a new S3 Bucket
18:15 Step 5 - Installing “Splunk Add-On for AWS” on Splunk Instance
20:31 Step 6 - Configure Account section in Splunk Add-On
22:46 Step 7 - Configure AWS Add-On Inputs

***** WATCH OUT FOR BELOW LINKS MENTIONED IN THE SESSION *****
Splunk Add-On for AWS
https://splunkbase.splunk.com/app/1876/
GuarDuty Findings List
https://docs.aws.amazon.com/guardduty...
Export GuardDuty Findings Configuration
https://docs.aws.amazon.com/guardduty...

********** WATCH THIS SECTION FOR MY OTHER VIDEOS ***********

1. Launching AWS instance in AWS Console -    • AWS : How to Launch a Linux Instance  
2. Terraform Introduction and Installation -    • Launching AWS Instance using Terraform - P...  
3. Terraform code to set up basic infrastructure in AWS provider -    • Launching AWS Instance using Terraform - P...  
4. Terraform code to access the Instance using different methods -    • Launching AWS Instance using Terraform - P...  

Не удается загрузить Youtube-плеер. Проверьте блокировку Youtube в вашей сети.
Повторяем попытку...
SIEM SPLUNK | GuardDuty | AWS GuardDuty Integration with Splunk via AWS S3 Bucket

Поделиться в:

Доступные форматы для скачивания:

Скачать видео

  • Информация по загрузке:

Скачать аудио

Похожие видео

SPLUNK | SQS | EVENT BRIDGE | GuardDuty | Amazon SQS Queue to Onboard GuardDuty Findings to  Splunk

SPLUNK | SQS | EVENT BRIDGE | GuardDuty | Amazon SQS Queue to Onboard GuardDuty Findings to Splunk

Understanding AWS Secrets Manager - AWS Online Tech Talks

Understanding AWS Secrets Manager - AWS Online Tech Talks

Минимизируйте неэффективные поиски в Splunk

Минимизируйте неэффективные поиски в Splunk

Splunk

Splunk

AWS re:Inforce 2019: The Fundamentals of AWS Cloud Security (FND209-R)

AWS re:Inforce 2019: The Fundamentals of AWS Cloud Security (FND209-R)

Устранение уязвимостей Security Hub с помощью GuardDuty Detection | Практическое руководство | Cl...

Устранение уязвимостей Security Hub с помощью GuardDuty Detection | Практическое руководство | Cl...

Administrators Anonymous: Splunk Best Practices and Useful Tricks I Learned the Hard Way

Administrators Anonymous: Splunk Best Practices and Useful Tricks I Learned the Hard Way

Introduction to AWS Inspector | Scan AWS EC2, ECR and Lambda with Inspector | AWS Security | Part 1

Introduction to AWS Inspector | Scan AWS EC2, ECR and Lambda with Inspector | AWS Security | Part 1

What I do as a Cloud Security Engineer

What I do as a Cloud Security Engineer

How to create and manipulate Splunk Lookup | Configuring Time Based Lookup | Basic & Adv. query

How to create and manipulate Splunk Lookup | Configuring Time Based Lookup | Basic & Adv. query

ВСЕ ЧТО НУЖНО ЗНАТЬ ПРО DEVOPS

ВСЕ ЧТО НУЖНО ЗНАТЬ ПРО DEVOPS

AWS Cloud Security & Compliance

AWS Cloud Security & Compliance

Palantir: Когда данные становятся оружием

Palantir: Когда данные становятся оружием

Building a Classic Dashboard in Splunk

Building a Classic Dashboard in Splunk

AWS | Security Hub | Splunk | Integrating AWS Security Hub with Splunk via Amazon Event Bridge

AWS | Security Hub | Splunk | Integrating AWS Security Hub with Splunk via Amazon Event Bridge

Azure Activity Logs Tutorial | Integrating Activity Logs with Splunk via EventHub @ Subscription

Azure Activity Logs Tutorial | Integrating Activity Logs with Splunk via EventHub @ Subscription

AWS Secrets Manager Service Overview with Demo

AWS Secrets Manager Service Overview with Demo

The top 7 ways to operationalize AWS Security Hub - AWS Online Tech Talks

The top 7 ways to operationalize AWS Security Hub - AWS Online Tech Talks

AWS re:Invent 2021 - AWS Security Reference Architecture: Visualize your security

AWS re:Invent 2021 - AWS Security Reference Architecture: Visualize your security

Interconnecting Amazon VPCs across AWS Regions using AWS Transit Gateway - Demo

Interconnecting Amazon VPCs across AWS Regions using AWS Transit Gateway - Demo

© 2025 ycliper. Все права защищены.



  • Контакты
  • О нас
  • Политика конфиденциальности



Контакты для правообладателей: [email protected]