Network IDS / IPS Fields Applications

Want to custom-define fields in your events?

Field Applications let you download field definitions to install in your Splunk server, or share fields you made yourself! Even better, an Application can have more than one type of content, so you can add fields to any Application.

Not a Splunk user? Download Splunk, set up your Splunk server, and then install your Applications(s) to extend your server.

Snort fields

Extracts snort 2.6 fields which can be used in reporting.

Author: mfratto Type: Fields
Rating: Awaiting 3 votes Added: 15 months ago
Downloads: 200 Last Updated: 14 months ago
License: Creative Commons Price: Free
Categories:
Screenshot

Splunk for Snort

This application applies to Snort alert logs, bringing their field names into compliance with the Splunk interface standard (see http://www.splunkbase.com/howtos/Splunk/howto:Understanding_Splunk's_interface_standards).

Author: Splunk Type: Inputs, Fields, Event Types
Rating: Awaiting 3 votes Added: 11 months ago
Downloads: 600 Last Updated: 4 months ago
License: Creative Commons Price: Free
Categories: