IPFIX is an industry standard to describe network flows. The Splunk Add-on for IPFIX allows a Splunk Enterprise administrator to receive and convert IPFIX flow information from compatible network gear. Once collected, the packet capture data can be analyzed directly or used as a contextual data feed to correlate with other vulnerability related data in Splunk. This add-on provides the inputs and CIM-compatible knowledge to use with other Splunk apps, such as Splunk App for Enterprise Security and Splunk App for PCI Compliance.
(0)
Categories
Created By
Type
Downloads
Licensing
Splunk Answers
Resources