Skip to main content
Warning
This app is archived. App archiving documentation
Enosys Add-on for Cisco Firepower eStreamer app icon

Enosys Add-on for Cisco Firepower eStreamer

Full credit to the Cisco Security team for their work and maintenance (https://splunkbase.splunk.com/app/3662/#/details)Built by Simon Sigre
splunk product badge

Default Version 1.0.0

November 20, 2019

Compatibility

Splunk Enterprise

CIM Version: 4.x

Rating
5
(16)

Log in to rate this app

Support
Archived Add-on

Full credit to the Cisco Security team for their work and maintenance (https://splunkbase.splunk.com/app/3662/#/details) This is intended to update field extraction issues and for deployment on Search Heads in Splunk Cloud and as such removed binaries and additional tagging to ensure full CIM compliance is met. This effort should not detract from that of the original project and this TA is intended as a companion. This Application is published and maintained by Enosys and all the transformation codes. The Enosys Add-on for Cisco Firepower eStreamer works only when Cisco Firepower and eStreamer logs are forwarded to Splunk Enterprise or Splunk Cloud via Splunk Heavy Forwarder with an installed Cisco eStreamer eNcore Add-on for Splunk version 3.6.8.