Getting Data In

How to import cef data from data source in splunk enterprise without an agent?

New Member

I tried many times to import raw data (CEF) from another SIEM (just to test) and configured to send data to a specific port with zero results.
Any ideas on what is the correct procedure to do this?

0 Karma

Ultra Champion

you can take data directly from CEF to splunk, there is also an app for it:
installation and configuration here:
what is the other SIEM tool?

0 Karma
Get Updates on the Splunk Community!

Detecting Remote Code Executions With the Splunk Threat Research Team

WATCH NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If exploited, ...

Enter the Splunk Community Dashboard Challenge for Your Chance to Win!

The Splunk Community Dashboard Challenge is underway! This is your chance to showcase your skills in creating ...

.conf24 | Session Scheduler is Live!!

.conf24 is happening June 11 - 14 in Las Vegas, and we are thrilled to announce that the conference catalog ...