Splunk® Supported Add-ons

Splunk Add-on for Cisco WSA

Download manual as PDF

Download topic as PDF

Release notes for the Splunk Add-on for Cisco WSA

About this release

Version 3.3.0 of the Splunk Add-on for Cisco WSA is compatible with the following software, CIM versions, and platforms.

Splunk platform versions 6.6.x, 7.0.x, 7.1.x, 7.2.x
CIM 4.2 or later
Platforms Platform independent
Vendor Products Cisco IronPort AsyncOS 7.1, 7.5, 7.7, 8.0, 8.0.6, 8.1.0, 8.5.0, 8.5.2, 8.5.3, 9.0, 10.0, 10.1, 10.1.0, 10.1.1, 10.5.0 and 11.0.

New features

Version 3.3.0 of the Splunk Add-on for Cisco WSA fixes bugs and adds support for Cisco IronPort AsyncOS v10.x+

Fixed issues

Version 3.3.0 of the Splunk Add-on for Cisco WSA has the following fixed issues.

Date resolved Issue number Description
2018-05-02 ADDON-14426 Fixed field extraction for v9 log issues
2018-04-18 ADDON-10966 eventtype "ironport_proxy", "ironport_traffic_monitor", "cisco_wsa_threatfound" are tag expanded
2018-04-13 ADDON-13440 bytes field does not conform to CIM definition
2018-04-05 ADDON-8789 dest field would be set to unknown in some cases

Known issues

Version 3.3.0 of the Splunk Add-on for Cisco WSA has the following known issue.

Date Issue number Description
2014-11-24 ADDON-2350 Cisco Security Suite 3.0.3 compatibility issues. Cisco Security Suite is community supported, so add-on is compatible on a best-effort basis. File bugs for specific issues.

Third-party software attributions

Version 3.3.0 of the Splunk Add-on for Cisco WSA does not incorporate any third-party software or libraries.

PREVIOUS
Source types for the Splunk Add-on for Cisco WSA
  NEXT
Release history for the Splunk Add-on for Cisco WSA

This documentation applies to the following versions of Splunk® Supported Add-ons: released


Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters