All Apps and Add-ons

Splunk Add-on for Netflow Windows compatibility

jmcrabb
Explorer

Are there plans to make a Windows Server compatible version of this add-on? If so, what's the timeframe?

Jim

0 Karma
1 Solution

rgaleone1
Path Finder

Jim -
This TA relies on NFDUMP tools to capture, and translate NetFlow off the wire, from binary data into flat files for indexing into Splunk. NFDUMP tools are only available for *nix systems at this time and I don't see them being ported to Windows anytime soon. This is out of the control of Splunk, but I would point you to NetFlow for Splunk powered by NetFlow Integrator. NetFlow Integrator is compatible with Windows, although I've never used it on a Windows box. A link to NFDUMP tools should you consider spinning up a *nix box.

Hope this helps.

[Edit]: Additional answers to similar questions.

View solution in original post

rgaleone1
Path Finder

Jim -
This TA relies on NFDUMP tools to capture, and translate NetFlow off the wire, from binary data into flat files for indexing into Splunk. NFDUMP tools are only available for *nix systems at this time and I don't see them being ported to Windows anytime soon. This is out of the control of Splunk, but I would point you to NetFlow for Splunk powered by NetFlow Integrator. NetFlow Integrator is compatible with Windows, although I've never used it on a Windows box. A link to NFDUMP tools should you consider spinning up a *nix box.

Hope this helps.

[Edit]: Additional answers to similar questions.

jmcrabb
Explorer

Thanks for the info!

0 Karma
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...