Getting Data In

Cisco ESA Deprecated?

aelliott
Motivator

I saw that http://apps.splunk.com/app/533/ Cisco ESA is deprecated, however, what add-on replaces it in the Cisco Enterprise Security Suite? I'm only seeing ISE, WSA, and ASA

Tags (3)
0 Karma
1 Solution

jconger
Splunk Employee
Splunk Employee

You can still use the Cisco ESA add-on as is. The functionality has not been integrated into the Cisco Security Suite since the update to 3.x yet, but ESA is the next on the list.

View solution in original post

friea
Splunk Employee
Splunk Employee

Support for Cisco Ironport WSA has been added to Cisco Security Suite; you can access the latest version here: http://apps.splunk.com/app/525/

A new CIM-compliant Splunk for Cisco ESA Add on is also available: http://apps.splunk.com/app/1761/

jconger
Splunk Employee
Splunk Employee

You can still use the Cisco ESA add-on as is. The functionality has not been integrated into the Cisco Security Suite since the update to 3.x yet, but ESA is the next on the list.

aelliott
Motivator

Sounds good, Looks like I'll be making an attempt at making it CIM compliant in the future 🙂

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Laser Bananas and Edge Hubs: Exploring Operational Technology (OT) Data Through a ...

  OT is a different environment to traditional IT and can have interesting challenges when interfacing the ...

Event Series: Mastering AI Tokenomics and Splunk Agent Observability

Beyond the Black Box: Correlating AI Performance and Tokenomics with Splunk Agent Observability   As ...