The Splunk Add-on for Cisco ESA allows allows a Splunk® Enterprise administrator to leverage Textmail, HTTP, and Authentication logs of Cisco ESA. You can use Splunk Enterprise to analyze these logs directly or use them as a contextual data source to correlate with other communication and authentication data in Splunk Enterprise. This add-on provides the inputs and CIM-compatible knowledge to use with other Splunk Enterprise apps, such as Splunk App for Enterprise Security and Splunk App for PCI Compliance.
(0)
Categories
Created By
Type
Downloads
Licensing
Splunk Answers
Resources