Announcing the End of Life (EOL) and End of Support (EOS) for the Splunk App for CEF. As of July 30, 2021, the Splunk App for CEF is EOL and no longer available on Splunkbase. Customers who have already been using the Splunk App for CEF will continue to receive support until the EOS date of April 2, 2022.

Installation and configuration overview for the Splunk App for CEF
Complete the following steps to install and use this app.
Prerequisites
- Review the Hardware and software requirements for the Splunk App for CEF.
- See Performance expectations for the Splunk App for CEF to size your environment.
- Optional for Splunk Enterprise, see the certificate requirements in step 3 below.
Procedure
- If you are installing this app for the first time, follow the instructions to Install the Splunk App for CEF.
- If you are upgrading from the 1.0.0 version of the app, follow the instructions in Upgrade an existing installation of the Splunk App for CEF.
- Define CEF mappings and output groups with the Splunk App for CEF.
- Deploy the Splunk Add-on for CEF Output to indexers.
Last modified on 17 January, 2019
PREVIOUS How the Splunk App for CEF works |
NEXT Hardware and software requirements for the Splunk App for CEF |
This documentation applies to the following versions of Splunk® App for CEF (EOL): 2.1.0, 2.2.0, 2.3.0
Feedback submitted, thanks!