Splunk® Supported Add-ons

Splunk Add-on for Juniper

Lookups for the Splunk Add-on for Juniper

Lookup files are located in $SPLUNK_HOME/etc/apps/Splunk_TA_juniper/lookups on *nix systems and %SPLUNK_HOME%\etc\apps\Splunk_TA_juniper\lookups on Windows systems. They map fields from Juniper Networks to CIM-compliant values in the Splunk platform. The Splunk Add-on for Juniper has the following lookups:

Filename Description
juniper_netscreen_firewall_actions.csv Maps Netscreen vendor_action and action_type to action and status.
juniper_netscreen_firewall_ids_info.csv Maps alert_id to ids_type and signature.
juniper_transport_protocols.csv Maps transport_id to protocol and transport.
Last modified on 25 September, 2023
Source types for the Splunk Add-on for Juniper   Release notes for the Splunk Add-on for Juniper

This documentation applies to the following versions of Splunk® Supported Add-ons: released


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters