Lookups for the Splunk Add-on for Salesforce
The following topic contains information on the lookups for the Splunk Add-on for Salesforce.
KV Store lookups for the Splunk add-on for Salesforce
Lookup definition | Purpose |
---|---|
lookup_sfdc_usernames
|
The lookup is used to enrich the Salesforce events coming from Event Log File and LoginHistory.
It maps For Event Log File, it maps |
Scripted lookups for the Splunk add-on for Salesforce
The Splunk Add-on for Salesforce includes one scripted lookup. The script for the lookup is located in
$SPLUNK_HOME/etc/apps/Splunk_TA_salesforce/bin
.
Lookup definition | Purpose |
---|---|
lookup_sfdc_user_agent_scripted
|
The lookup is used to enrich the Salesforce events coming from Event Log File.
Maps the |
Lookup lookup_sfdc_user_agent.csv
has been removed starting in version 4.1.0 of the Splunk Add-on for Salesforce.
Troubleshoot the Splunk Add-on for Salesforce |
This documentation applies to the following versions of Splunk® Supported Add-ons: released, released
Feedback submitted, thanks!