Default Version 4.0.0
December 11, 2018
December 11, 2018
Splunk Enterprise
Platform Version: 9.4, 9.3, 9.2, 9.1, 9.0
CIM Version: 4.x
Log in to rate this app
#33 in Utilities
**The Splunk Add-on for Zeek aka Bro is being replaced by a the TA For Zeek (https://splunkbase.splunk.com/app/5466/)** The Splunk Add-on for Zeek aka Bro allows a Splunk software administrator to analyze packet capture data directly or use it as a contextual data feed to correlate with other vulnerability related data in the Splunk plaftorm. This add-on provides the inputs and CIM-compatible knowledge to use with other Splunk apps, such as Splunk Enterprise Security and the Splunk App for PCI Compliance.
Log in to report this app listing.