The NETSCOUT Omnis Cyber Intelligence (OCI) App for Splunk enables your security team with deep analysis functions. Security events generated from OCI are sent to Splunk with a contextual launch capability that allows Splunk users to query back into OCI for further analysis and smart forensics capabilities.
Key Features
• Dashboard showing Omnis Cyber Intelligence generated events.
• Drilldowns from events to Omnis Cyber Intelligence Security Events Center.
• Events are sent from Omnis Cyber Intelligence in Syslog CEF format over UDP.