Skip to main content
Splunk Add-on for Cisco FireSIGHT app icon

Splunk Add-on for Cisco FireSIGHT

The Splunk Add-on for Cisco FireSIGHT Management Center (formerly Sourcefire Defense Center) leverages data collected via Cisco eStreamer to allow a Splunk® Enterprise administrator to analyze and correlate IDS log data and malware detection reports from Cisco FireSIGHT and Snort IDS through the Splunk Common Information Model. You can then use the data with other Splunk apps, such as Splunk App for Enterprise Security and Splunk App for PCI Compliance.Built by Splunk LLC
splunk product badge

Default Version 3.3.0

June 18, 2015

Compatibility

Splunk Enterprise

CIM Version: 4.x, 3.x

Rating
5
(1)

Log in to rate this app

Support
Splunk Supported
Ranking

#24 in Security, Fraud & Compliance

The Splunk Add-on for Cisco FireSIGHT Management Center (formerly Sourcefire Defense Center) leverages data collected via Cisco eStreamer to allow a Splunk® Enterprise administrator to analyze and correlate IDS log data and malware detection reports from Cisco FireSIGHT and Snort IDS through the Splunk Common Information Model. You can then use the data with other Splunk apps, such as Splunk App for Enterprise Security and Splunk App for PCI Compliance.