September 10, 2026
Radware CWAAP Audit Log Collector
Collects the Radware Cloud WAAP portal Activity Log (audit / user-activity log) through the Radware Cloud API. Audit log only: use CWAAP Log Exporter for WAF and Web DDoS security events.Built by sean ramatiSplunk Enterprise, Splunk Cloud
Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0, 9.4, 9.3
Log in to rate this app
The Radware CWAAP Audit Log Collector brings the Radware Cloud WAAP portal Activity Log into Splunk: logins, configuration and policy changes, user and API-key management, and every other action recorded by the portal. Each record is indexed as a JSON event (sourcetype radware:cwaap:audit) with the field names used by the legacy Radware CWAF Event Collector (app 5281) available as search-time aliases, so existing searches keep working. The audit log is available through the Radware Cloud API only. All other CWAAP log types (WAF and Web DDoS security events, access logs, bot events) are delivered by CWAAP Log Exporter to Amazon S3, Azure Blob Storage or SFTP; bring those into Splunk from there. This add-on deliberately collects nothing else. This add-on is provided as-is and is not covered by Radware support contracts.
Log in to report this app listing.