- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Splunk App for CEF
knutm
Engager
09-01-2021
02:47 AM
I can see that the Splunk App for CEF is announced EOL.
Is a new app coming or has it been renamed or rebranded?
Does anyone know of any other app that do the same job?
https://docs.splunk.com/Documentation/CEFapp/2.3.0/ReleaseNotes/Newfeatures
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
moore4708
New Member
10-28-2021
05:15 AM
We have a similar issue. Splunk support did not have an answer.
One possible solution might be "CEF Extraction Add-on for Splunk"
https://splunkbase.splunk.com/app/487/
I have not found documentation on it and it is not supported by Splunk.
I have also see references to a partial solution using some changes to the configuration on the splunk agent side.
With Splunk sending their CEF product EOL, I am surprised they don't have a corporate recommendation.
Anyone have more concrete solutions?
