New Features for Data Manager
| New feature | Description |
|---|---|
| Ingest data from CrowdStrike data sources |
You can now ingest security event data from CrowdStrike data sources into your Splunk environment through Data Manager. For more information, see CrowdStrike data. |
| New feature | Description |
|---|---|
| Promote index tagging | The index created during data promotion is now tagged with datalake_type=s3promote. |
| Azure Monitor Logs Azure Function | Updated the Node.js runtime to v22. |
| Data Manager rename notification | A UI banner informs users that Data Manager will be renamed to Data Input. |
| CrowdStrike access request | The Request Access to CrowdStrike button now is displayed when you select the CrowdStrike source and the stack SCS configuration is set to "ReadyForProvisioning." Selecting the button opens a request form to initiate provisioning. |