Skip to main content
BXTI Add-on for Global Relay app icon

BXTI Add-on for Global Relay

Collect Global Relay Event Log API audit events in Splunk with secure credential storage, configurable polling, checkpointing, JSON extraction, and initial CIM mappings.Built by Benedict Tawiah
splunk product badge

Default Version 1.0.1

July 24, 2026

Compatibility

Splunk Enterprise, Splunk Cloud

Platform Version: 10.4, 10.3, 10.2, 10.1, 10.0, 9.4

CIM Version: 8.x, 6.x

Rating
0
(0)

Log in to rate this app

Support
Not Supported

BXTI Add-on for Global Relay collects audit and activity events from the Global Relay Event Log API and indexes them in Splunk using the globalrelay:eventlog sourcetype. It provides secure credential management, configurable collection intervals, continuation checkpointing, JSON field extraction, and initial CIM mappings for authentication, data access, and change activity.