<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
  <channel>
    <title>Latest SplunkBase Applications (Inputs)</title>
    <link>http://www.splunkbase.com/feed/apps.rss/Inputs</link>
    <description>Latest SplunkBase Applications filtered by Inputs</description>

    <item>
      <title>Splunk for Change Management</title>
      <author>Splunk</author>
      <pubDate>Mon, 01 Dec 2008 18:36:09 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Splunk+for+Change+Management</link>
      <guid isPermaLink="false">95d9940cef25692b9483d352c8ed494c</guid>
      <description>Splunk for Change Management provides predefined reports and dashboards to facilitate change auditing, change detection, change reporting, change validation and incident response based on change events, change tickets and configuration files.</description>
    </item>
    <item>
      <title>Splunk for Windows Management</title>
      <author>Splunk</author>
      <pubDate>Mon, 01 Dec 2008 17:58:40 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Splunk+for+Windows+Management</link>
      <guid isPermaLink="false">47060fc48e4f93e3795890aafc5c8267</guid>
      <description>Splunk for Windows application is a compilation of saved searches, eventtypes, inputs, and field extractions for Windows. The extractions are compatible with the Splunk Common Information Model. The application also contains an integration for Microsoft’s System Center Operations Manager.</description>
    </item>
    <item>
      <title>Splunk for Network Security</title>
      <author>Splunk</author>
      <pubDate>Tue, 04 Nov 2008 19:06:16 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Splunk+for+Network+Security</link>
      <guid isPermaLink="false">8a48676a95f0f7c3a5c567aa9f159b0e</guid>
      <description>The Splunk Network Security application offers a set of reports, saved searches, and dashboards, as well as corresponding alerts that you can use to monitor your firewalls, intrusion detection and prevention systems, as well as operating systems.</description>
    </item>
    <item>
      <title>Splunk for UNIX</title>
      <author>Splunk</author>
      <pubDate>Tue, 04 Nov 2008 19:04:51 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Splunk+for+UNIX</link>
      <guid isPermaLink="false">94bc942e8cd8c90bf64d566700735e5d</guid>
      <description>The Splunk for UNIX application is a compilation of a dashboard, saved searches, eventtypes, and field extractions that work for various flavors of UNIX. In addition, the application also ships with a set of scripted inputs that can be used to monitor UNIX machines. Inputs like top, ps, vmstat, and netstat are supported.</description>
    </item>
    <item>
      <title>Script for database inputs</title>
      <author>rcarney</author>
      <pubDate>Thu, 23 Oct 2008 23:50:16 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Script+for+database+inputs</link>
      <guid isPermaLink="false">4c689287f2e986f028679173d14ac8fb</guid>
      <description>This script is designed to be used as a scripted input for data contained in
database tables. Plese refer to the Splunk Admin guide for more information on
configuring scripted inputs.

The script has been successfully used in a number of deployments, and should
work with Oracle, MySQL, and sybase databases as-is. Other database types can
be added by installing the appropriate perl DBD module, and editing the script
to configure for the new dbtype.

In this version, all of the SQL code has been abstracted from the script, and
all parameters including the query are passed as commandline arguments to the
script.</description>
    </item>
    <item>
      <title>Application: CheckPoint OPSEC LEA Application for Linux</title>
      <author>Splunk</author>
      <pubDate>Thu, 23 Oct 2008 20:26:19 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Application%3A+CheckPoint+OPSEC+LEA+Application+for+Linux</link>
      <guid isPermaLink="false">66674c569720aeb3fd53f1185a4925b3</guid>
      <description>This application contains an OPSEC LEA application to drop into Splunk 3.3 or later, offering a client, event types, and field extractions. This version is compiled for Solaris.
The application conforms with the Splunk common information model, meaning that it uses common field names for its data.</description>
    </item>
    <item>
      <title>CheckPoint OPSEC LEA Application for Solaris/SPARC</title>
      <author>Splunk</author>
      <pubDate>Thu, 23 Oct 2008 20:24:02 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:CheckPoint+OPSEC+LEA+Application+for+Solaris%7FSPARC</link>
      <guid isPermaLink="false">c4811343a34356649107c734c7dde59a</guid>
      <description>This application contains an OPSEC LEA application to drop into Splunk 3.3 or later, offering a client, event types, and field extractions. This version is compiled for Solaris. 
The application conforms with the Splunk common information model, meaning that it uses common field names for its data.</description>
    </item>
    <item>
      <title>Splunk for IMAP</title>
      <author>erik</author>
      <pubDate>Fri, 17 Oct 2008 19:07:33 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Splunk+for+IMAP</link>
      <guid isPermaLink="false">faf88f0ebec2f68db41a4f2aea2a7181</guid>
      <description>This application will continually download mail from an imap account where it is indexed by a splunk server. You can do cool things like see how often you get mail from someone, graph by size, time, etc.</description>
    </item>
    <item>
      <title>Splunk for Citrix XenServer Management</title>
      <author>Splunk</author>
      <pubDate>Thu, 16 Oct 2008 19:10:09 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Splunk+for+Citrix+XenServer+Management</link>
      <guid isPermaLink="false">931cc18d8db03fec361e7e2dfd2c99bd</guid>
      <description>This Splunk application manages Citrix XenServers.  It includes inputs, indexing, searches, reports, dashboards and field actions.</description>
    </item>
    <item>
      <title>Splunk for Snare</title>
      <author>Splunk</author>
      <pubDate>Wed, 01 Oct 2008 22:28:16 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Splunk+for+Snare</link>
      <guid isPermaLink="false">d1622685eb55d92d97a3d0883d347583</guid>
      <description>The Splunk for Snare application offers eventtypes and field extractions for Snare collecting Windows events.</description>
    </item>
    <item>
      <title>Splunk for tcpdump</title>
      <author>rataide</author>
      <pubDate>Tue, 16 Sep 2008 19:43:30 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Splunk+for+tcpdump</link>
      <guid isPermaLink="false">3e648d0b4dd134ececd859d7c4ca11b3</guid>
      <description>This application will allow you to collect data from a tcpdump standard output directly into Splunk, it will also perform the necessary field extractions based on the Common Information Model

This application is compliant with the 3.3.x standard.</description>
    </item>
    <item>
      <title>Splunk for Network</title>
      <author>Splunk</author>
      <pubDate>Fri, 05 Sep 2008 23:29:25 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Splunk+for+Network</link>
      <guid isPermaLink="false">5a25fb41ca4703988250b99417eca178</guid>
      <description>This is a simple application to monitor change on network device configurations.  It runs a scripted input to request the network device upload it&#039;s configuration file to a tftp server.  The input reads /tftpboot for any files that get uploaded and indexes them through the fschange source.</description>
    </item>
    <item>
      <title>Splunk for Jira</title>
      <author>Splunk</author>
      <pubDate>Fri, 05 Sep 2008 23:27:48 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Splunk+for+Jira</link>
      <guid isPermaLink="false">f590d7531f1ec3f3b8286ec84d1ee2e0</guid>
      <description>This application reads in issues for a Jira server.  It uses a scripted input that accesses the Jira remote SOAP interface.</description>
    </item>
    <item>
      <title>Splunk for Snort</title>
      <author>Splunk</author>
      <pubDate>Wed, 20 Aug 2008 18:31:47 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Splunk+for+Snort</link>
      <guid isPermaLink="false">c4de85d8c07f02e7aae87c5d2cf2f925</guid>
      <description>This application applies to Snort alert logs, bringing their field names into compliance with the Splunk interface standard (see http://www.splunkbase.com/howtos/Splunk/howto:Understanding_Splunk&#039;s_interface_standards).</description>
    </item>
    <item>
      <title>Web Page Monitor</title>
      <author>erik</author>
      <pubDate>Fri, 15 Aug 2008 03:17:24 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Web+Page+Monitor</link>
      <guid isPermaLink="false">9f5cf71efea79575dcb8050cb6518d02</guid>
      <description>This bundle will check a set of webpages every interval and index the result, time, size and optionally content and or crc of page(s). Its cool to do searches to see when your pages change, take long to load, or many other cool things.</description>
    </item>
    <item>
      <title>Sendmail fields, inputs, and event types</title>
      <author>Splunk</author>
      <pubDate>Mon, 14 Jan 2008 18:33:07 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Sendmail+fields%2C+inputs%2C+and+event+types</link>
      <guid isPermaLink="false">e6e1c2112286c360aa09c203dcdad2ab</guid>
      <description>This add-on applies to Sendmail logs, bringing their field names into compliance with the Splunk interface standard (see http://www.splunkbase.com/howtos/Splunk/howto:Understanding_Splunk&#039;s_interface_standards).</description>
    </item>
    <item>
      <title>Netcache fields, inputs, and event types</title>
      <author>Splunk</author>
      <pubDate>Mon, 14 Jan 2008 18:30:11 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Netcache+fields%2C+inputs%2C+and+event+types</link>
      <guid isPermaLink="false">3dda8837097357ffcdb02b8489237812</guid>
      <description>This add-on normalizes Netcache fields so that other Splunk applications understand them.</description>
    </item>
    <item>
      <title>iptables fields, inputs, and event types</title>
      <author>Splunk</author>
      <pubDate>Mon, 14 Jan 2008 18:22:47 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:iptables+fields%2C+inputs%2C+and+event+types</link>
      <guid isPermaLink="false">8e50a9451bd5816f9724fa6f991c34f5</guid>
      <description>This add-on applies to iptables firewall logs, normalizing their field names so they work well with other Splunk applications.</description>
    </item>
    <item>
      <title>Exchange fields and inputs</title>
      <author>Splunk</author>
      <pubDate>Mon, 14 Jan 2008 18:22:06 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Exchange+fields+and+inputs</link>
      <guid isPermaLink="false">c3c01540d9e1f1909b49230ea3661d5c</guid>
      <description>This add-on applies to Microsoft Exchange event tracking logs, bringing their field names into compliance with the Splunk interface standard (see http://www.splunkbase.com/howtos/Splunk/howto:Understanding_Splunk&#039;s_interface_standards).</description>
    </item>
    <item>
      <title>Sancp/Sguil Add-on</title>
      <author>araitz</author>
      <pubDate>Tue, 18 Dec 2007 19:25:57 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Sancp%7FSguil+Add-on</link>
      <guid isPermaLink="false">86554233c6f753ca862119b8d13bdb0e</guid>
      <description>This bundle indexes sancp logs when sancp is patched with the sguil output patch, extracts the fields, then sends to a processor which converts the decimal IP addresses to dotted format.</description>
    </item>
    <item>
      <title>OSX Battery Monitor</title>
      <author>kordless</author>
      <pubDate>Mon, 08 Oct 2007 01:19:21 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:OSX+Battery+Monitor</link>
      <guid isPermaLink="false">d1dfec17085c80fbfb05090fd54a1548</guid>
      <description>Bundle for monitoring battery usage on an OSX based laptop.</description>
    </item>
    <item>
      <title>Negative Searching Demo Bundle</title>
      <author>maverick</author>
      <pubDate>Fri, 07 Sep 2007 04:18:53 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Negative+Searching+Demo+Bundle</link>
      <guid isPermaLink="false">5c0f7184d8c648bae1e1991d91f83aef</guid>
      <description>This bundle, created jointly by Maverick and Stephen Sorkin, demonstrates a way to perform negative searches by indexing known patterns and catching anomalous patterns into a separate index.</description>
    </item>
    <item>
      <title>WildPackets packet number removal</title>
      <author>deeann</author>
      <pubDate>Tue, 28 Aug 2007 20:53:27 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:WildPackets+packet+number+removal</link>
      <guid isPermaLink="false">19450a04d7235542f44922b732d91bfe</guid>
      <description>Removes packet numbers from WildPackets events.</description>
    </item>
    <item>
      <title>IPMI Fan Speeds</title>
      <author>markc</author>
      <pubDate>Mon, 13 Aug 2007 19:12:01 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:IPMI+Fan+Speeds</link>
      <guid isPermaLink="false">fed0063684271a2dca82462b9ab99013</guid>
      <description>Gather and report on system fan speeds using ipmi</description>
    </item>
    <item>
      <title>SMART Disk Reporting</title>
      <author>markc</author>
      <pubDate>Mon, 20 Aug 2007 07:52:30 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:SMART+Disk+Reporting</link>
      <guid isPermaLink="false">549655d3741955605eedff890642a6b7</guid>
      <description>This bundle outputs this text :

=== START OF INFORMATION SECTION ===
Model Family=     Seagate Momentus 7200.1 series
Device Model=     ST910021AS
Serial Number=    3MH0498W
Firmware Version= 3.07
User Capacity=    100,030,242,816 bytes
Device is=        In smartctl database [for details use: -P show]
ATA Version is=   7
ATA Standard is=  Exact ATA specification draft version not indicated
Local Time is=    Mon Aug 20 00:38:18 2007 PDT
SMART support is= Available - device has SMART capability.
SMART support is= Enabled

=== START OF READ SMART DATA SECTION ===
SMART overall-health self-assessment test result= PASSED

Which is then indexed by Splunk.</description>
    </item>
    <item>
      <title>Dee&#039;s wtmp input bundle</title>
      <author>deeann</author>
      <pubDate>Mon, 20 Aug 2007 07:21:12 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:Dee%27s+wtmp+input+bundle</link>
      <guid isPermaLink="false">498a8bf1585ebe9f33f57ade0832e23f</guid>
      <description>Help Splunk to index the output of last (from /var/log/wtmp), even though it&#039;s in a binary format.</description>
    </item>
    <item>
      <title>javac++ bundle</title>
      <author>carasso</author>
      <pubDate>Sun, 19 Aug 2007 23:56:13 +0000</pubDate>
      <link>http://www.splunkbase.com/apps/Inputs/app:javac%2B%2B+bundle</link>
      <guid isPermaLink="false">b1b492cdcead1a4442a57e91e19f6d59</guid>
      <description>adds reasonably good support for C++ and Java source code by breaking functions, classes, and structs into different events.</description>
    </item>

  </channel>
</rss>