Skip to main content
Splunk Add-on for Cisco ESA app icon

Splunk Add-on for Cisco ESA

The Splunk Add-on for Cisco ESA allows the Splunk software administrator to leverage Textmail, HTTP, Consolidated Event Logs, AMP, Delivery, Bounce, and Authentication logs of Cisco ESA. You can use the Splunk platform to analyze these logs directly or use them as a contextual data source to correlate with other communication and authentication data in the Splunk platform. This add-on provides the inputs and CIM-compatible knowledge to use with other Splunk platform apps, such as Splunk Enterprise Security and the Splunk App for PCI Compliance.Built by Splunk LLC
splunk product badge

Default Version 1.7.1

June 30, 2026

Compatibility

Splunk Enterprise, Splunk Cloud

Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0, 9.4, 9.3, 9.2, 9.1

CIM Version: 5.x

Rating
3
(5)

Log in to rate this app

Support
Splunk Supported

The Splunk Add-on for Cisco ESA allows the Splunk software administrator to leverage Textmail, HTTP, Consolidated Event Logs, AMP, Delivery, Bounce, and Authentication logs of Cisco ESA. You can use the Splunk platform to analyze these logs directly or use them as a contextual data source to correlate with other communication and authentication data in the Splunk platform. This add-on provides the inputs and CIM-compatible knowledge to use with other Splunk platform apps, such as Splunk Enterprise Security and the Splunk App for PCI Compliance.