Accept License Agreements

This app is provided by a third party and your right to use the app is in accordance with the license provided by that third-party licensor. Splunk is not responsible for any third-party apps and does not provide any warranty or support. If you have any questions, complaints or claims with respect to this app, please contact the licensor directly.

Thank You

Downloading Centrify Add-on for Splunk
MD5 checksum (centrify-add-on-for-splunk_22.tgz) 77c8f7f509960a6f575809061a6c14ef MD5 checksum (centrify-add-on-for-splunk_21.tgz) 8eef5c744494dd6a7e958340c463aaae MD5 checksum (centrify-add-on-for-splunk_20.tgz) ac459342bc92d3c1159792626071afd6
To install your download
For instructions specific to your download, click the Details tab after closing this window.

Flag As Inappropriate

Centrify Add-on for Splunk

Overview
Details
As the only industry-recognized leader in both Privileged Identity Management and Identity-as-a-Service, Centrify provides a single platform to secure every user’s access to apps and infrastructure in today’s boundaryless, hybrid enterprise through the power of identity services.

The Centrify Add-on for Splunk categorizes event log data captured from Centrify privileged access activity and normalizes these events for Splunk Common Information Model (CIM) compatibility. This allows real-time analysis and risk mitigation to identify a potential breach in progress.

Key Benefits:
• Minimize the risk associated with privileged access
• Centralize visibility across enterprise deployments
• Easily import categorized data sets from privileged activity
• Leverage existing investments in SIEM and alert tools without additional costs

Centrify Infrastructure Services Splunk Solution Brief:
https://www.centrify.com/resources/centrify-infrastructure-services-for-splunk/

Please find a post on Centrify Community , that'll help you with integrating Centrify Server Suite events into Splunk.

Link to the post:
http://community.centrify.com/t5/Community-Tech-Blog/Integrating-Centrify-Server-Suite-with-SIEM-Tools-Part-2/ba-p/23982

Also, note that you have link at the bottom to an Integration guide that goes into more details of the Centrify Server Suite and Splunk Integration.

Release Notes

Version 2.2
Oct. 16, 2017

- Changed categorization of Centrify Infrastructure Services Audit events to centrify_css_winlog & centrify_css_syslog sourcetypes
- Added the feature to replay session from Splunk with Centrify Infrastructure Services
- Changed the name to Centrify Add-On for Splunk from Centrify Splunk Add-on

Version 2.1
Sept. 15, 2016

Version 2.0
Aug. 19, 2016

The Centrify Add-On V2.0 for Splunk:
- Deprecated the Centrify Splunk Insight Application
- This Add-On helps normalize the Centrify Server Suite events into Splunk and at the same time make it CIM complaint

51
Installs
322
Downloads
Share Subscribe LOGIN TO DOWNLOAD

Subscribe Share

Splunk Certification Program

Splunk's App Certification program uses a specific set of criteria to evaluate the level of quality, usability and security your app offers to its users. In addition, we evaluate the documentation and support you offer to your app's users.

Are you a developer?

As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 50GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps and add-ons from Splunk, our partners and our community. Find an app or add-on for most any data source and user need, or simply create your own with help from our developer portal.

Follow Us:
© 2005-2017 Splunk Inc. All rights reserved.
Splunk®, Splunk>®, Listen to Your Data®, The Engine for Machine Data®, Hunk®, Splunk Cloud™, Splunk Light™, SPL™ and Splunk MINT™ are trademarks and registered trademarks of Splunk Inc. in the United States and other countries. All other brand names, product names, or trademarks belong to their respective owners.