Skip to main content
Warning
This app is archived. App archiving documentation
Splunk App for CEF app icon

Splunk App for CEF

The Splunk App for CEF enables you to augment, filter, and aggregate Splunk Enterprise events, transforming them into the Common Event Format (CEF), an open log management standard. Use Splunk Enterprise to gain faster, easier, and deeper insights across all machine data, and add context to events by using Splunk add-ons and custom lookups. When you are ready, map Splunk fields to CEF fields using data models, with no knowledge of the Splunk search syntax required, and then output them to a syslog receiver in common event format.Built by Splunk LLC
splunk product badge

Default Version 2.3.0

April 2, 2020

Compatibility

Splunk Enterprise

Platform Version: 9.4, 9.3, 9.2, 9.1, 9.0

CIM Version: 4.x

Rating
4
(12)

Log in to rate this app

Support
Archived App

The Splunk App for CEF enables you to augment, filter, and aggregate Splunk Enterprise events, transforming them into the Common Event Format (CEF), an open log management standard. Use Splunk Enterprise to gain faster, easier, and deeper insights across all machine data, and add context to events by using Splunk add-ons and custom lookups. When you are ready, map Splunk fields to CEF fields using data models, with no knowledge of the Splunk search syntax required, and then output them to a syslog receiver in common event format.