diogofgm / TA-kaspersky

Kaspersky SC Add-on for Splunk
Apache License 2.0
3 stars 1 forks source link

Build extractions for CEF format #3

Open diogofgm opened 6 years ago

diogofgm commented 6 years ago

Build extractions for CEF format

kulcsari commented 6 years ago

Hi,

If you think, you can check this answers about handling CEF events with Splunk. Maybe it can save some time for you. https://answers.splunk.com/answers/607697/cef-logs-parsing-for-enterprise-security.html

Regards, Istvan