Firegen for Snort interfaces between the data collected by Snort sensors and stored in a database using Barnyard2. The app is using the Splunk DB Connect app to interface between the database where the snort events are stored and the Splunk instances.
The dashboards provide various stats on the attack signatures identified by Snort and allow for one-click reviews of offending IP addresses.
Version 1.0. Please send feedback and suggestions!
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.