Skip to main content
VMware NSX add-on app icon

VMware NSX add-on

Splunk add-on for CIM mapping of VMware NSX syslog fields and tagging for data models, including IDS.Built by Martin Hettervik
splunk product badge

Default Version 1.0.5

June 27, 2025

Compatibility

Splunk Enterprise, Splunk Cloud

Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0, 9.4, 9.3, 9.2, 9.1, 9.0

CIM Version: 6.x, 5.x

Rating
0
(0)

Log in to rate this app

Support
Not Supported
Ranking

#15 in Firewall

Splunk add-on for CIM mapping of VMware NSX syslog fields and tagging for data models, including IDS. Note that the event types and some of the fields may need to be adjusted based on how your NSX tags the syslog messages. The add-on need to be installed on the search heads for parsing. This add-on was inspired by the "VMware NSX-T Splunk App" (https://splunkbase.splunk.com/app/4241).