About the Splunk Mobile App for
The Splunk Mobile App now is available for . You don't have to be in front of a laptop or desktop to take action during an urgent incident. You can use the Splunk Mobile App to view and respond to notifications, view dashboards, view event details, or run a playbook.
To get started with the Splunk Mobile App, perform the following administration and user tasks.
The Splunk Mobile app for Splunk Phantom only works with iOS devices, and does not support multi-tenancy.
Perform the following administration tasks before using the Splunk Mobile App for :
- Open the required ports. See Ports for connecting mobile devices to Phantom using Splunk Connected Experience apps in Install and Upgrade .
- Enable the Mobile App registration feature. See Enable or disable registered mobile devices in Administer .
- Check the status of
ProxyD. See View the health of your system in Administer .
To use the app, you must be a registered user in the Phantom platform. Contact your admin about adding new users.
Perform the following tasks after an admin has completed the administration tasks:
- Install the app and register your mobile device. See Mobile device registration in Use .
- Use the Splunk Mobile App. See Using the Splunk Mobile App for in Use .
You can't use the Splunk Mobile App with two-factor authentication. If you're using two-factor authentication, you see the following error in the WSGI log file: "phantom_ui.ui.shared.HttpError: This user requires two factor authentication. Access to REST API is denied."
This documentation applies to the following versions of Splunk® Phantom: 4.8, 4.9, 4.10, 4.10.1, 4.10.2, 4.10.3, 4.10.4, 4.10.6, 4.10.7