Lookups for the Splunk Add-on for Juniper
Lookup files are located in $SPLUNK_HOME/etc/apps/Splunk_TA_juniper/lookups
on *nix systems and %SPLUNK_HOME%\etc\apps\Splunk_TA_juniper\lookups
on Windows systems. They map fields from Juniper Networks to CIM-compliant values in the Splunk platform. The Splunk Add-on for Juniper has the following lookups:
Filename | Description |
---|---|
juniper_netscreen_firewall_actions.csv | Maps Netscreen vendor_action and action_type to action and status .
|
juniper_netscreen_firewall_ids_info.csv | Maps alert_id to ids_type and signature .
|
juniper_transport_protocols.csv | Maps transport_id to protocol and transport .
|
Source types for the Splunk Add-on for Juniper | Release notes for the Splunk Add-on for Juniper |
This documentation applies to the following versions of Splunk® Supported Add-ons: released
Feedback submitted, thanks!