Getting Data In

How to accomplish a manual nessus upload and parsing the fields?

teubertg
New Member

Hello,

I am trying to upload Nessus data into Splunk by uploading the .nessus / CSV or html file. Using the API to connect Splunk to Nessus is no option in this specific case.
I can't get the fields parsed. The Splunk_TA_nessus app seems to solely work with API and not by manually uploading the Nessus-reports/files.
I read that the .nessus file should be copied to the spools directory if I want to manually upload it. But that does not work either - no upload nor parsing. I even changed the inputs.conf.windows srcdir to the spool directory.

Does anybody have an idea - how to accomplish a manual nessus upload and parsing the fields?

Thank you !

Labels (1)
0 Karma

wanderson7
Explorer

Hi, I am not sure if this directly answers your question, but perhaps it could be of some help.  I recently developed a free open-source application called TenaPull, which processes Nessus data for ingestion by Splunk.  There is more information here:

https://community.splunk.com/t5/Getting-Data-In/I-developed-an-application-to-process-Nessus-data-fo...

GitHub repo:
https://github.com/billyJoePiano/TenaPull

0 Karma
Get Updates on the Splunk Community!

Introducing Splunk Enterprise 9.2

WATCH HERE! Watch this Tech Talk to learn about the latest features and enhancements shipped in the new Splunk ...

Adoption of RUM and APM at Splunk

    Unleash the power of Splunk Observability   Watch Now In this can't miss Tech Talk! The Splunk Growth ...

Routing logs with Splunk OTel Collector for Kubernetes

The Splunk Distribution of the OpenTelemetry (OTel) Collector is a product that provides a way to ingest ...