TA-Illumio

Splunk Community

TA-Illumio

TA-Illumio
The Illumio Technology Add-On for Splunk enriches Illumio Policy Compute Engine (PCE) data with Common Information Model (CIM) field names, event types, and tags. This TA enables Illumio data to be easily used with Splunk Enterprise Security, Splunk App for PCI Compliance, etc. TA-Illumio compatibility matrix Ver 1.X -> Splunk 6 and Splunk 7 + PCE ver 17.1, 17.2 and 17.3 and 18.1 Ver 2.X -> Splunk 7 + PCE ver 18.2 (with Events 2.0 syslog messages), PCE ver 18.3, PCE 19.1 and PCE 19.3 Ver 3.0/3.1 -> Splunk 7 and Splunk 8 + PCE ver 18.2 (with Events 2.0 syslog messages), PCE ver 18.3, PCE 19.1 and PCE 19.3 Ver 3.2-> Splunk 7.3 and Splunk 8 + PCE ver 18.2 (with Events 2.0 syslog messages), PCE ver 18.3, PCE 19.1, PCE 19.3, PCE 20.1, and PCE 21.2 Ver 3.2.2->Splunk 8 + PCE 18.3, PCE 19.1, PCE 19.3, PCE 20.1, PCE 21.2, PCE 21.5 Ver 3.2.3-> Splunk 8 and Splunk 9 + PCE 21.2, PCE 21.5, PCE 22.2, PCE 22.5 For dashboards with Illumio data, please install the Illumio App for Splunk available at https://splunkbase.splunk.com
2 topics and 0 replies mentioned TA-Illumio in
Latest Topics
Latest Replies
No posts to display.
Top Topics
My Topics
No posts to display.