Default Version 2.3.0
April 2, 2020
April 2, 2020
Splunk Enterprise
Platform Version: 9.4, 9.3, 9.2, 9.1, 9.0
CIM Version: 4.x
Log in to rate this app
The Splunk App for CEF enables you to augment, filter, and aggregate Splunk Enterprise events, transforming them into the Common Event Format (CEF), an open log management standard. Use Splunk Enterprise to gain faster, easier, and deeper insights across all machine data, and add context to events by using Splunk add-ons and custom lookups. When you are ready, map Splunk fields to CEF fields using data models, with no knowledge of the Splunk search syntax required, and then output them to a syslog receiver in common event format.
Log in to report this app listing.