All Apps and Add-ons

Is the Splunk Add-on for Nessus supported on Windows?

btran
Explorer

good morning

I installed the universal forwarder on the Windows box, and the Splunk Add-on for Nessus. It doesn't work. Is the Splunk add-on for Nessus supported on Windows?

This inputs.conf file isn't for Windows OS

Nessus scripted input using custom directories

[script://./bin/nessus2splunk.py -s /opt/nessus/incoming -t /opt/nessus/parsed]
disabled = false
interval = 120
index = _internal
source = nessus2splunk
sourcetype = nessus2splunk

thank you for your help

0 Karma

jclehmuth
Path Finder

btran-
The nessus add-on utilizes Splunk's built in python, which doesn't come with universal forwarders. You have to use a full Splunk instance.
"This add-on does not support universal forwarders for data collection because the add-on requires Python."

http://docs.splunk.com/Documentation/AddOns/latest/Nessus/InstalltoSearchHead

rpille_splunk
Splunk Employee
Splunk Employee

Hi Btran! Thanks for your question. Please try using the default/inputs.conf.windows instead as your template for what you copy to local. Hopefully that will work for you.

0 Karma
Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...