Installation and configuration overview for the Splunk Add-on for Sysmon
Complete the following steps to install and configure this add-on:
- Configure your Microsoft Sysmon deployment to collect data
- Install your add-on:
- Configure your inputs:
Optionally, configure WEF/WEC support to forward and collect Sysmon events
The Splunk Add-on for Microsoft Windows and the Splunk App for Windows Infrastructure are not required for the Splunk Add-on for Sysmon to function.
Hardware and software requirements for the Splunk Add-on for Sysmon | Configure your Microsoft Sysmon deployment to collect data |
This documentation applies to the following versions of Splunk® Supported Add-ons: released
Feedback submitted, thanks!