About the Splunk Add-on for McAfee
|Vendor Products||McAfee Network Security Platform 10.1|
|Visible in Splunk Web||No. This add-on does not contain any views.|
The Splunk Add-on for McAfee NSP allows a Splunk software administrator to collect Alert/Attack events, Audit Events, Firewall Access Events, and Fault Events in custom format from McAfee Network Security Platform servers using syslog. This add-on provides the inputs and CIM-compatible knowledge to use with other Splunk apps, such as Splunk Enterprise Security and the Splunk App for PCI Compliance.
Download the Splunk Add-on for McAfee NSP from Splunkbase at https://splunkbase.splunk.com/app/5426
Hardware and software requirements for the Splunk Add-on for McAfee NSP
This documentation applies to the following versions of Splunk® Supported Add-ons: released