Default Version 1.1.6
January 29, 2026
January 29, 2026
Splunk Enterprise, Splunk Cloud
Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0, 9.4, 9.3, 9.2, 9.1
CIM Version: 6.x, 5.x
Log in to rate this app
The FortiNDR Cloud Add-on for Splunk allows administrators to incorporate the network telemetry data collected and analyzed by FortiNDR Cloud into their Splunk deployment. This app leverages the fully RESTful APIs to interact with the cloud backend to introduce specific data sets into Splunk. With this app, raw events can also be retrieved from the AWS S3 Buckets to import specific network events and all the associated metadata into Splunk.
Log in to report this app listing.