All Apps and Add-ons

How do I get Rapid7 logs into splunk?

ryancoots
Engager

I am trying to get logs from rapid7 insightvm into my slpunk server. I have downloaded the Rapid7 Nexpose add-on and set it up. I have the index created and the cron job (all created with the add-on install) but no logs are gettting dumped to my index. Is there anything else outside of the add-on setup instructions that I need to do?

Thanks in advance!

Splunk Enterprise 8.0.1
Rapid7 Insight VM 6.6.10
Rapid7 Nexpose Technology Add-On for Splunk 1.1.8

Tags (1)

splunkettes
Path Finder

I am getting ready to attempt the rapid7 Nexpose addon. Did it end up working for you? I am wondering if there is a better approach since the app only has two stars on splunk base and is not a splunk supported app. 

0 Karma

makinajr
New Member

Insight VM API will be better

through api but i dont see the addon on the splunk cloud.

I will recommend not to use the nexpose because will mess your nexpose appliance.

0 Karma

splunkettes
Path Finder

How does it mess up the nexpose appliance?

0 Karma
Get Updates on the Splunk Community!

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...

Announcing the Migration of the Splunk Add-on for Microsoft Azure Inputs to ...

Announcing the Migration of the Splunk Add-on for Microsoft Azure Inputs to Officially Supported Splunk ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI! Discover how Splunk’s agentic AI ...