Default Version 1.0.5
June 27, 2025
June 27, 2025
Splunk Enterprise, Splunk Cloud
Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0, 9.4, 9.3, 9.2, 9.1, 9.0
CIM Version: 6.x, 5.x
Log in to rate this app
#15 in Firewall
Splunk add-on for CIM mapping of VMware NSX syslog fields and tagging for data models, including IDS. Note that the event types and some of the fields may need to be adjusted based on how your NSX tags the syslog messages. The add-on need to be installed on the search heads for parsing. This add-on was inspired by the "VMware NSX-T Splunk App" (https://splunkbase.splunk.com/app/4241).
Log in to report this app listing.