Skip to content

Sending IntelMQ events to Splunk

  1. Go to Splunk and configure in order to be able to receive logs (intelmq events) to a TCP port
  2. Use TCP output bot and configure accordingly to the Splunk configuration that you applied.