All Apps and Add-ons

How do I get Rapid7 logs into splunk?

ryancoots
Engager

I am trying to get logs from rapid7 insightvm into my slpunk server. I have downloaded the Rapid7 Nexpose add-on and set it up. I have the index created and the cron job (all created with the add-on install) but no logs are gettting dumped to my index. Is there anything else outside of the add-on setup instructions that I need to do?

Thanks in advance!

Splunk Enterprise 8.0.1
Rapid7 Insight VM 6.6.10
Rapid7 Nexpose Technology Add-On for Splunk 1.1.8

Tags (1)

splunkettes
Path Finder

I am getting ready to attempt the rapid7 Nexpose addon. Did it end up working for you? I am wondering if there is a better approach since the app only has two stars on splunk base and is not a splunk supported app. 

0 Karma

makinajr
New Member

Insight VM API will be better

through api but i dont see the addon on the splunk cloud.

I will recommend not to use the nexpose because will mess your nexpose appliance.

0 Karma

splunkettes
Path Finder

How does it mess up the nexpose appliance?

0 Karma
Get Updates on the Splunk Community!

AppDynamics Summer Webinars

This summer, our mighty AppDynamics team is cooking up some delicious content on YouTube Live to satiate your ...

SOCin’ it to you at Splunk University

Splunk University is expanding its instructor-led learning portfolio with dedicated Security tracks at .conf25 ...

Credit Card Data Protection & PCI Compliance with Splunk Edge Processor

Organizations handling credit card transactions know that PCI DSS compliance is both critical and complex. The ...