Splunk Search

CEF output to Arcsight - where can I find 'rtoutput.py' ?

meno
Path Finder

Where can I find rtoutput.py ? It is mentioned here on page 8.

Tags (1)
0 Karma
1 Solution

araitz
Splunk Employee
Splunk Employee

The framework is still being tightly controlled while it undergoes additional development - specifically, I am working on a UI for it 🙂

I will be sure to upload to Splunkbase and post a blog when it is ready for mass distribution.

View solution in original post

araitz
Splunk Employee
Splunk Employee

The framework is still being tightly controlled while it undergoes additional development - specifically, I am working on a UI for it 🙂

I will be sure to upload to Splunkbase and post a blog when it is ready for mass distribution.

matthieu_araman
Communicator

it looks like this rtoutput.py script is no longer needed -> the functionality is now integrated into splunk cef app which allow most configuration via a web form.

0 Karma

awurster
Contributor

can we have an update on this please? is it part of the real time output app?

http://splunk-base.splunk.com/apps/48082/splunk-real-time-output

0 Karma

edbolton
Explorer

I'm very interested in doing this in my environment, has there been any movement on the UI/formal support?

0 Karma

dmlee
Communicator

Hi araitz,

our customer also want to use splunk to monitor logs and send alert message to ArcSight, May I know the progress of your framework ? Could you please share rtoutput.py to us ? thank you.

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...