The Splunk Addon for InQuest allows a Splunk® Enterprise administrator to search and build visualizations and alerts for InQuest device logs.
This technology addon includes CIM-compatible mappings and CEF extractions for InQuest syslog output.
InQuest (http://www.inquest.net/) offers an on-premise network-based security solution that inspects application content over the most commonly used network protocols and performs Deep File Inspection (DFI) capable of detecting malware as it passes through your traditional security defenses.