Skip to main content
CEF Extraction Add-on for Splunk app icon

CEF Extraction Add-on for Splunk

This add-on provides transforms for CEF headers and key/values extraction for extractling custom strings (useful for dealing with Arcsight logs)Built by Igor Sher
splunk product badge

Default Version 1.5.6

June 23, 2025

Compatibility

Splunk Enterprise, Splunk Cloud

Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0, 9.4, 9.3, 9.2, 9.1, 9.0

Rating
4
(14)

Log in to rate this app

Support
Not Supported

This add-on provides transforms for CEF headers and key/values extraction for extractling custom strings (useful for dealing with Arcsight logs)