Skip to main content

 

Splunk Lantern

Setting up and configuring SOAR

 

 

 

Installing and logging into Splunk SOAR Cloud Installing and logging into Splunk SOAR On-premise

Login using the credentials provided by the Splunk Cloud Delivery Team.

  • Configure basic settings like your password, company name, and email server. Splunk SOAR (Cloud) requires an email server to send users email for action approvals, when SLAs are breached, and when items that they are tracking change. Check Splunk Docs for more information on this.

     

  • Configure a data source and run a demo playbook. A list of playbooks is available based on the data source you configured. Check Splunk Docs for more information on this.

     

  • Configure apps and assets that will provide actions for your playbooks. Check Splunk Docs for more information on this.

     

How to install Splunk SOAR on-premises.

  • Configure basic settings like your password, company name, and email server. Check Splunk Docs for more information on this.

     

  • Configure a data source and run a demo playbook. A list of playbooks is available based on the data source you configured. Check Splunk Docs for more information on this.

     

  • Configure apps and assets that will provide actions for your playbooks. Check Splunk Docs for more information on this.

     

Adding and managing users

Home > Administration > User Management > User.

Setting up the main dashboard