All Apps and Add-ons

Is the Splunk Add-on for Nessus supported on Windows?

btran
Explorer

good morning

I installed the universal forwarder on the Windows box, and the Splunk Add-on for Nessus. It doesn't work. Is the Splunk add-on for Nessus supported on Windows?

This inputs.conf file isn't for Windows OS

Nessus scripted input using custom directories

[script://./bin/nessus2splunk.py -s /opt/nessus/incoming -t /opt/nessus/parsed]
disabled = false
interval = 120
index = _internal
source = nessus2splunk
sourcetype = nessus2splunk

thank you for your help

0 Karma

jclehmuth
Path Finder

btran-
The nessus add-on utilizes Splunk's built in python, which doesn't come with universal forwarders. You have to use a full Splunk instance.
"This add-on does not support universal forwarders for data collection because the add-on requires Python."

http://docs.splunk.com/Documentation/AddOns/latest/Nessus/InstalltoSearchHead

rpille_splunk
Splunk Employee
Splunk Employee

Hi Btran! Thanks for your question. Please try using the default/inputs.conf.windows instead as your template for what you copy to local. Hopefully that will work for you.

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...