Network Security Fields Applications

Want to custom-define fields in your events?

Field Applications let you download field definitions to install in your Splunk server, or share fields you made yourself! Even better, an Application can have more than one type of content, so you can add fields to any Application.

Not a Splunk user? Download Splunk, set up your Splunk server, and then install your Applications(s) to extend your server.

Sonicwall Firewall

This bundle performs field extractions for sonicwall TZ 170 without the UTM/IDS modules

Author: araitz Type: Fields
Rating: Awaiting 3 votes Added: 10 months ago
Downloads: 113 Last Updated: 10 months ago
License: Creative Commons Price: Free
Categories:
Screenshot

Splunk for Network Security

The Splunk Network Security application offers a set of reports, saved searches, and dashboards, as well as corresponding alerts that you can use to monitor your firewalls, intrusion detection and prevention systems, as well as operating systems.

Author: Splunk Type: Searches, Reports, Inputs, Fields, Event Types, Alerts
Rating: Awaiting 3 votes Added: 2 months ago
Downloads: 725 Last Updated: 11 days ago
License: Creative Commons Price: Free
Categories:

Splunk for tcpdump

This application will allow you to collect data from a tcpdump standard output directly into Splunk, it will also perform the necessary field extractions based on the Common Information Model This application is compliant with the 3.3.x standard.

Author: rataide Type: Scripted Inputs, Inputs, Fields
Rating: Awaiting 3 votes Added: 26 days ago
Downloads: 82 Last Updated: 26 days ago
License: Creative Commons Price: Free
Categories: