Splunk® Security Add-on for SAP® solutions

User Guide

Installation requirements and version dependencies

The Splunk Security Add-on for SAP® solutions retrieves alerts generated by SAP Enterprise Threat Detection (ETD) software. Information gathered by the add-on is then displayed on the dashboards of the Splunk Security App for SAP solutions. The Splunk Security App for SAP solutions relies on data from the Splunk Security Add-on for SAP solutions. For the Splunk Security App for SAP solutions to function, you must install both the add-on and app.

Splunk Cloud Platform deployments on Victoria Experience do not require Inputs Data Manager (IDM). If your deployment is on Victoria Experience, you can run add-ons that contain scripted and modular inputs directly on the search head. To determine if your deployment has the Classic or Victoria experience, see Determine your Splunk Cloud Platform Experience in the Splunk Cloud Platform Admin Manual.

Meet the following are requirements to run the Splunk Security Add-on for SAP solutions:

Splunk Enterprise installation prerequisites

The following are installation prerequisites if you install the Splunk Security Add-on for SAP solutions Splunk Enterprise:

  • Your user account must have the admin role and the edit_local_app capability. The admin role includes that capability by default.
  • You need approximately 1 GB of memory in the /tmp/ directory for the installation to complete. When installing the app through either the CLI or Splunk Web, you must use the /tmp/ directory to complete the installation.

System requirements

This app runs on the Splunk platform. The following system requirements apply for the Splunk software you use to run the Splunk Security App for SAP solutions:

Deployment More information
On-premises deployment of Splunk platform See System requirements for use of Splunk Enterprise on-premises in the Splunk Enterprise Installation Manual.
Splunk Cloud Platform Install the app on the search head. See Where to install Splunk add-ons in the Splunk Supported Add-ons manual.

Version dependencies

See the following table to ensure you are using the correct combination of the add-on, the app, and the Splunk platform:

Splunk Security for SAP solutions version Splunk Security Add-on for SAP solutions version Splunk Security App for SAP solutions version Splunk Common Information Model version Splunk platform version
1.0.0 1.0.0 1.0.0 5.0.2 or higher Splunk

Enterprise 8.2.x
or higher or
Splunk Cloud Platform

Last modified on 01 May, 2023
About the Splunk Security Add-on for SAP solutions   Install and configure the Splunk Security Add-on for SAP solutions

This documentation applies to the following versions of Splunk® Security Add-on for SAP® solutions: 1.0.0


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters