Splunk Search

How to pull data into Splunk from Simple Event Correlator (SEC)?

daniel333
Builder

All,

We need to pull data from a platform called "SEC", Simple Event Correlator into Splunk. Any one familiar with this? Have any apps or experience in this matter they can share?

thanks
-Daniel

Tags (1)
0 Karma

dmaislin_splunk
Splunk Employee
Splunk Employee

SEC can produce output by executing external programs (e.g., snmptrap(1) or mail(1)), by writing to files, by sending data to TCP and UDP based servers, by calling precompiled Perl subroutines, etc. You should be able to output and send data over syslog via TCP or UDP into Splunk.

0 Karma
Get Updates on the Splunk Community!

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...

[Live Demo] Watch SOC transformation in action with the reimagined Splunk Enterprise ...

Overwhelmed SOC? Splunk ES Has Your Back Tool sprawl, alert fatigue, and endless context switching are making ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...