All Apps and Add-ons

Is Auditd compatible with Splunk 7.1.1?

jacobsmith14
New Member

I see it does not explicitly list 7.1 in Splunkbase. Does anyone have this running with 7.1.1?

Thanks!

0 Karma

felipesewaybric
Contributor

Yes, is fully compatible.

0 Karma

woodcock
Esteemed Legend

The author is just late in updating his splunkbase entry. The very simplified app contains nothing that would be incompatible with v7.1 splunk, as is the case with most inputs/CIM-based apps. What do you say, @trustedsubject?

0 Karma

MonkeyK
Builder

Should be compatible. As I understand it, AuditD logs are sent via syslog. Any field extractions are defined in the app, so the new version of Splunk should have nothing to do with it.

0 Karma

vidhyaArumalla
Path Finder

I agree with @MonkeyK

0 Karma
.conf21 Now Fully Virtual!
Register for FREE Today!

We've made .conf21 totally virtual and totally FREE! Our completely online experience will run from 10/19 through 10/20 with some additional events, too!