Splunk Enterprise

Does Splunk Enterprise (60 days Eval) have the same limitation with the Zscaler app and Zscaler add-on like Splunk Cloud

asif99usa
New Member

Does Splunk Enterprise  8.2.4 60 days Eval have the same limitation with the Zscaler app and Zscaler add-on like Splunk Cloud  ?  

Thanks
Asif

Labels (2)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

To what limitation do you refer?

---
If this reply helps you, Karma would be appreciated.
0 Karma

asif99usa
New Member

We noticed there wasn't App context option available for  HTTP event collector configuration  on Splunk Enterprise. It's auto configuring/pointing to Zscaler Add-On for Splunk (TA-Zscaler_CIM) context by default. 

 

HTTP event collector configuration on our Splunk Enterprise

asif99usa_1-1643732913162.png

 

On Zscaler/Splunk setup guide:

asif99usa_0-1643732532202.png

 

0 Karma
Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...