Splunk® App for CEF

Deploy and Use Splunk App for CEF

Acrobat logo Download manual as PDF


Announcing the End of Life (EOL) and End of Support (EOS) for the Splunk App for CEF. As of July 30, 2021, the Splunk App for CEF is EOL and no longer available on Splunkbase. Customers who have already been using the Splunk App for CEF will continue to receive support until the EOS date of April 2, 2022.
Acrobat logo Download topic as PDF

Installation and configuration overview for the Splunk App for CEF

Complete the following steps to install and use this app.

Prerequisites

Procedure

  1. If you are installing this app for the first time, follow the instructions to Install the Splunk App for CEF.
  2. If you are upgrading from the 1.0.0 version of the app, follow the instructions in Upgrade an existing installation of the Splunk App for CEF.
  3. Define CEF mappings and output groups with the Splunk App for CEF.
  4. Deploy the Splunk Add-on for CEF Output to indexers.
Last modified on 17 January, 2019
PREVIOUS
How the Splunk App for CEF works
  NEXT
Hardware and software requirements for the Splunk App for CEF

This documentation applies to the following versions of Splunk® App for CEF: 2.1.0, 2.2.0, 2.3.0


Was this documentation topic helpful?

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters