<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
  <channel>
    <title>Latest SplunkBase Applications (Fields in Security)</title>
    <link>http://www.splunkbase.com/feed/apps.rss/Fields/Security</link>
    <description>Latest SplunkBase Applications filtered by Fields in category Security</description>

    <item>
      <title>Splunk for Network Security</title>
      <author>Splunk</author>
      <pubDate>Tue, 04 Nov 2008 19:06:16 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Fields/Security/app:Splunk+for+Network+Security</link>
      <guid isPermaLink="false">8a48676a95f0f7c3a5c567aa9f159b0e</guid>
      <description>The Splunk Network Security application offers a set of reports, saved searches, and dashboards, as well as corresponding alerts that you can use to monitor your firewalls, intrusion detection and prevention systems, as well as operating systems.</description>
    </item>
    <item>
      <title>Splunk for F5 Networks</title>
      <author>will</author>
      <pubDate>Mon, 20 Oct 2008 06:47:07 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Fields/Security/app:Splunk+for+F5+Networks</link>
      <guid isPermaLink="false">9ef92f993a8cdc041a0fd73079111c68</guid>
      <description>Working with F5 we have built our first Splunk for F5 application which contains, saved searches, reports and dashboards for the F5 application firewall logs (ASM) and FirePass. 

There is a Splunk globe application included which is configured to plot the location of attackers logged in the ASM data and contains violation and web application info.</description>
    </item>
    <item>
      <title>Splunk for tcpdump</title>
      <author>rataide</author>
      <pubDate>Tue, 16 Sep 2008 19:43:30 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Fields/Security/app:Splunk+for+tcpdump</link>
      <guid isPermaLink="false">3e648d0b4dd134ececd859d7c4ca11b3</guid>
      <description>This application will allow you to collect data from a tcpdump standard output directly into Splunk, it will also perform the necessary field extractions based on the Common Information Model

This application is compliant with the 3.3.x standard.</description>
    </item>
    <item>
      <title>Sonicwall Firewall</title>
      <author>araitz</author>
      <pubDate>Wed, 19 Dec 2007 01:31:17 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Fields/Security/app:Sonicwall+Firewall</link>
      <guid isPermaLink="false">744dc2c0b92faad8233e35bda951406b</guid>
      <description>This bundle performs field extractions for sonicwall TZ 170 without the UTM/IDS modules</description>
    </item>
    <item>
      <title>Common Event Format - Field Extractions</title>
      <author>raffy</author>
      <pubDate>Thu, 06 Dec 2007 02:11:28 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Fields/Security/app:Common+Event+Format+-+Field+Extractions</link>
      <guid isPermaLink="false">e9265533eac559bd2aa0f535fcb64c09</guid>
      <description>CEF or the common event format is an event interoperability standard, defining a common syntax for communication among log generating devices and applications. This is an add-on to extract the fields of CEF messages.</description>
    </item>

  </channel>
</rss>