Lookups for the Splunk Add-on for Cisco WSA
The Splunk Add-on for Cisco WSA contains the folllowing lookup files.
Filename | Purpose |
---|---|
cisco_wsa_category_map_lookup.csv
|
Maps URL category abbreviations to the full forms and to a usage and severity value to support CIM compliance.
|
cisco_wsa_malware_action_lookup.csv
|
Translates x_webroot_scanverdict to malware_action to support CIM compliance.
|
cisco_wsa_proxy_action_lookup.csv
|
Maps acl_action to action to support CIM compliance.
|
cisco_wsa_traffic_action_lookup.csv
|
Maps vendor_action to action to support CIM compliance.
|
Troubleshoot the Splunk Add-on for Cisco WSA | Source types for the Splunk Add-on for Cisco WSA |
This documentation applies to the following versions of Splunk® Supported Add-ons: released
Feedback submitted, thanks!