Getting Data In

Is it possible to get Cisco eStreamer data processed by the Splunk universal forwarder?

mfamd
New Member

Hi,
Is it possible to get Cisco eStreamer data processed by the Splunk Universal forwarder?
Is there any step-by-step guide?

Many thanks

0 Karma

niketn
Legend

@mfamd, You can check Cisco eStreamer app from @douglashurd on Splunkbase.

https://splunkbase.splunk.com/apps/#/author/douglashurd

Documentation as listed on the App's details: https://supportforums.cisco.com/t5/sourcefire-documents/estreamer-encore-operations-guide-3-0/ta-p/3...

You can also refer to .conf Session on Cisco and Splunk for quick insight to this: http://conf.splunk.com/sessions/2017-sessions.html#search=cisco&

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"
0 Karma

niketn
Legend

@mfamd, is your issue resolved?

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...