Splunk® Supported Add-ons

Splunk Add-on for Infoblox

Sourcetypes for the Splunk Add-on for Infoblox

The Splunk Add-on for Infoblox includes the following source types and event types which map the data to the Splunk Common Information Model (CIM).

Sourcetype Description CIM data models
infoblox:audit Infoblox Audit logs Authentication, Change
infoblox:dhcp Infoblox DHCP logs Network Sessions
infoblox:dns Infoblox DNS logs Network Resolution (DNS)
infoblox:threatprotect Infoblox Threat Protection logs Intrusion Detection
Last modified on 06 October, 2022
Lookups for the Splunk Add-on for Infoblox   Lookups for the Splunk Add-on for Infoblox

This documentation applies to the following versions of Splunk® Supported Add-ons: released


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters