Skip to main content
FortiNDR Cloud Add-on for Splunk app icon

FortiNDR Cloud Add-on for Splunk

The FortiNDR Cloud Add-on for Splunk allows administrators to incorporate the network telemetry data collected and analyzed by FortiNDR Cloud into their Splunk deployment. This app leverages the fully RESTful APIs to interact with the cloud backend to introduce specific data sets into Splunk. With this app, raw events can also be retrieved from the AWS S3 Buckets to import specific network events and all the associated metadata into Splunk.Built by FortiNDRCloud Fortinet
splunk product badge

Default Version 1.1.6

January 29, 2026

Compatibility

Splunk Enterprise, Splunk Cloud

Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0, 9.4, 9.3, 9.2, 9.1

CIM Version: 6.x, 5.x

Rating
0
(0)

Log in to rate this app

Support
Developer Supported

The FortiNDR Cloud Add-on for Splunk allows administrators to incorporate the network telemetry data collected and analyzed by FortiNDR Cloud into their Splunk deployment. This app leverages the fully RESTful APIs to interact with the cloud backend to introduce specific data sets into Splunk. With this app, raw events can also be retrieved from the AWS S3 Buckets to import specific network events and all the associated metadata into Splunk.