Lookups for the Splunk Add-on for Forcepoint Web Security
The Splunk Add-on for Forcepoint Web Security has four lookups. The lookup files map fields from Forcepoint Web Security systems to CIM-compliant values in the Splunk platform. The lookup files are located in
$SPLUNK_HOME/etc/apps/Splunk_TA_websense-cg/lookups
.
Filename | Description |
---|---|
websense_actions.csv
|
Maps Forcepoint Web Security vendor_action to action
|
websense_categories.csv
|
Maps Forcepoint Web Security category_id to parent_category and child_category
|
websense_httpstatus.csv
|
Maps Forcepoint Web Security status to status_description and status_type
|
websense_severities.csv
|
Maps Forcepoint Web Security severity_id to severity
|
Troubleshoot the Splunk Add-on for Forcepoint Web Security |
This documentation applies to the following versions of Splunk® Supported Add-ons: released
Feedback submitted, thanks!