Skip to content

Dispatch-IT-Solutions/TA_unified2

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

4 Commits
 
 
 
 
 
 
 
 

Repository files navigation

Technology Add-On for Unified2 logging

Tag your incoming alert data as unified2 to take advantage of these field extractions. sourcetype = unified2

Note: This TA is used for parsing Unified2 "alert" logs currently. Support for packet logging and true unified logging are to come

Reference for Unified2: https://www.snort.org/faq/readme-unified2

Also, check us out on splunkbase : https://splunkbase.splunk.com/app/4823/

About

Technology Add-On for Unified2 logging

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published