About the Splunk Mobile App for
The Splunk Mobile App now is available for . You don't have to be in front of a laptop or desktop to take action during an urgent incident. You can use the Splunk Mobile App to view and respond to notifications, view dashboards, view event details, or run a playbook.
To get started with the Splunk Mobile App, perform the following administration and user tasks.
The Splunk Mobile app for Splunk SOAR (On-premises) only works with iOS devices, and does not support multi-tenancy.
Administration tasks
Perform the following administration tasks before using the Splunk Mobile App for :
- Open the required ports. See Ports for connecting mobile devices to using Splunk Connected Experience apps in Install and Upgrade .
- Enable the Mobile App registration feature. See Enable or disable registered mobile devices in Administer .
- Check the status of
ProxyD
. See View the health of your system in Administer .
User tasks
To use the app, you must be a registered user in the platform. Contact your admin about adding new users.
Perform the following tasks after an admin has completed the administration tasks:
- Install the app and register your mobile device. See Mobile device registration in Use .
- Use the Splunk Mobile App. See Using the Splunk Mobile App for in Use .
Limitations
You can't use the Splunk Mobile App with two-factor authentication. If you're using two-factor authentication, you see the following error in the WSGI log file: "phantom_ui.ui.shared.HttpError: This user requires two factor authentication. Access to REST API is denied."
This documentation applies to the following versions of Splunk® SOAR (On-premises): 5.0.1
Feedback submitted, thanks!