After the future removal of the classic playbook editor, your existing classic playbooks will continue to run, However, you will no longer be able to visualize or modify existing classic playbooks.
For details, see:
Onboard Splunk Cloud Platform or Splunk Enterprise Security data
Onboarding Splunk Cloud Platform alerts, notables, or event forwarding can be configured in the same way as Splunk Phantom. See the Splunk App for SOAR Export documentation.
Be sure to perform end to end testing prior to decommissioning your existing production environment.
Migrate Splunk Phantom playbooks and custom functions to Splunk SOAR (Cloud) |
This documentation applies to the following versions of Splunk® SOAR (Cloud): current
Feedback submitted, thanks!