Requirements
The following are required for setting up the FortiNDR Cloud App on Splunk:
- Splunk Enterprise, Splunk Cloud versions: 9.3, 9.2, 9.1
- FortiNDR Cloud App
- FortiNDR Cloud API token
-
FortiNDR Cloud API domain
For information on how to obtain the API token and the API domain information, the API Getting Started Guide.