Latest Version 0.9.8
July 14, 2022
This app is archived.
This Splunk app will connect to a NetWitness Concentrator/Broker via REST API. It will poll the NetWitness device regularly to collect new session meta data to be indexed by Splunk, it tries to use the Common Information Model for most of the fields. For install and configuration instructions please check README.txt after extracting it to $SPLUNK_HOME/etc/apps/
(0)
Categories
Created By
Type
Downloads
Licensing
Splunk Answers
Resources