Hi
I was trying to find a way in order to reproduce "http://docs.splunk.com/Documentation/AddonBuilder/2.0.0/UserGuide/CreateAlertActions#Create_an_adaptive_response_action_for_Enterprise_Security" "Create an adaptive response action for Enterprise Security" but using REST API in python
I could not find any info. I've found info to update "notable events" ("https://www.splunk.com/blog/2015/04/13/how-to-edit-notable-events-in-es-programatically.html"), but not to add/attach/run an adaptive response to a certain Event (I guess with event_id)
I'm trying to automate some Splunk iteration and I would like to use Selenium to it.
Thanks a lot for your help. It will be fully appreciated.
↧