Version 1.0.1
* Added status dashboard that displays events over time and statistics from Zeek's capture_loss.log
* Added additional event types for files, smb, software, and x509
* Updated dashboard searches to use event typing instead of sourcetype
Zeek App for Splunk provides dashboards and configurations to visualize you Zeek/Bro logs. You must also be using the Splunk Add-on for Zeek aka Bro and ensure the inputs.conf is configured for JSON data.
Splunk AppInspect evaluates Splunk apps against a set of Splunk-defined criteria to assess the validity and security of an app package and components.
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps and add-ons from Splunk, our partners and our community. Find an app or add-on for most any data source and user need, or simply create your own with help from our developer portal.