- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
FireEye Add-on for Splunk Enterprise: Do I need to create a local/inputs.conf file on my index?

mikelauth
Explorer
10-18-2017
08:43 AM
Do I need to create a local/inputs.conf file on my index under this TA? If so what should it contain?
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

gerald_contrera
Path Finder
11-23-2017
07:15 PM
We have fireeye sending to syslog and syslog creating a folder and log file. Splunk then monitoring the folder. How can i configure the Fireeye add-on to monitor the folder or look at the data coming in via "Monitor Folder"?
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
mvquyet195
New Member
07-14-2018
08:29 PM
what information splunk can read from fireeye's logs?
