Skip to main content
Veza app icon

Veza

Ingests Veza platform events and audit log entries via cursor-paginated REST API endpoints, delivering OAuth2-authenticated event streams with checkpoint management.

splunk product badge

Default Version 0.2.0
August 1, 2026
Compatibility
Splunk Enterprise, Splunk Cloud
Platform Version: 10.5, 10.4, 10.3, 10.2
Rating

0

(0)

Log in to rate this app
Support
Developer Supported
The Veza Add-on for Splunk ingests platform events and audit log entries from Veza tenants through cursor-paginated REST API endpoints. The add-on provides two modular inputs that authenticate via OAuth2 client credentials and deliver events with checkpoint management to ensure at-least-once delivery. Events are exported from the /api/v1/events/export and /api/v1/system/audit/export endpoints and indexed under the veza:events and veza:audit sourcetypes respectively. The add-on persists cursor state between collection runs, enabling administrators to monitor Veza authorization activity, access events, and system audit trails within Splunk. Each input is configured per Veza tenant, allowing organizations to consolidate event data from multiple Veza instances into a single Splunk deployment.

Categories

Security, Fraud & Compliance, Network Security

Created By

ServiceNow SecOps Applications

Type

addon

Resources

Log in to report this app listing