Latest Version 0.9.8
July 14, 2022
This app is archived. App archiving documentation
This Splunk app will connect to a NetWitness Concentrator/Broker via REST API. It will poll the NetWitness device regularly to collect new session meta data to be indexed by Splunk, it tries to use the Common Information Model for most of the fields. For install and configuration instructions please check README.txt after extracting it to $SPLUNK_HOME/etc/apps/
(0)
Categories
Created By
Type
Downloads
Splunk Answers
Ask a question about this app listing(Opens new window)Resources