All Apps and Add-ons

PCAP analyzer for Splunk format issue

token2
Path Finder

Derp nothing to see here- I used the generic data input and not the PCAP app specific app input

0 Karma
1 Solution

rechteklebe
Path Finder

Hi,
the PCAP Analyzer for Splunk is based on the PCAP app input, you have to define it in the UI. In the application you find a "how to get started guide".
Let me know if you have detailed questions.

View solution in original post

0 Karma

rechteklebe
Path Finder

Hi,
the PCAP Analyzer for Splunk is based on the PCAP app input, you have to define it in the UI. In the application you find a "how to get started guide".
Let me know if you have detailed questions.

0 Karma

token2
Path Finder

I had used the data inputs menu at the top of the data input webUI. I later realized I needed to scroll down and use the PCAP app specific data input menu at the bottom.

I do have a question on that, how does one make an app that adds a data input like that in the webUI? That is really really cool.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Splunk Asynchronous Forwarding Explained

Splunk asynchronous forwarding is often misunderstood as simply setting autoLBVolume. That is not quite right. ...

55 Days to Go: Secure Your Seat at Splunk University in Denver

Your .conf26 Experience Starts Before Opening Keynote  If Denver is known for its mile-high elevation, Splunk ...

(re)Introducing the Splunk Community Champions + 2026 – 2027 Splunk MVPs ...

This program exists as a channel to empower and recognize Splunk advocates and help supercharge initiatives to ...