All Apps and Add-ons

Version interoperability of Splunk Add-on for CyberArk

gomitamu
New Member

Version interoperability of Splunk Add-on for CyberArk

I was thinking of using the add-on for CyberArk to change logs' format from CyberArki PTA into CEF format input to Splunk Enterprise.

Splunk Add-on for CyberArk | Splunkbase

However, as the link above shows, it seems the latest version of the add-on support PTA 12.2, and there is no updates on this add-on.

Anyone knows about the version interoperability of PTA version 14.2 and this add-on? Or, is there are alternatives for this add-on?

I really apprecitate any comment. Thank you.

##Splunk-Add-on-for-CyberAr

0 Karma

gomitamu
New Member

@Meett Hello, thank you for your kind reply. I am glad to hear that you know the case that plug-in is used with v14.2. I'll be researching more and find what to do next. 

0 Karma

Meett
Splunk Employee
Splunk Employee

Hello @gomitamu ,
CyberArk TA supports only CyberArk v12. Official support for v14 is not available at this time. However you can use same TA to get data and twick the props if needed, i have seen some people using this TA with v14 and is working fine for them.

0 Karma

Meett
Splunk Employee
Splunk Employee

Hello @gomitamu ,
CyberArk TA supports only CyberArk v12. Official support for v14 is not available at this time. However you can use same TA to get data and twick the props if needed, i have seen some people using this TA with v14 and is working fine for them.

 
0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk, and empower your SOC to reach new heights! Duration: 1 hour  Prepare to ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...