The Splunk for Cisco IronPort Email Security Appliance (ESA) technology add-on is a collection of inputs, field extractions, and other search-time knowledge that is used to drive reporting and search for data collected from Cisco ESA devices.
Reports and dashboards have been removed from the plug-in and placed in the Cisco Security Suite. Please download the Cisco Security Suite for the search head components.
- Updated to provide compatibility with Splunk 4.2
- Updated to include a new setup workflow to assist with initial configuration
DEPRECATION NOTICE This app has been deprecated. The replacement Splunk 6 comatible version can be found with Splunk for Cisco Security Suite. Please refer to that app.
Support for this content
This app is not officially supported by Splunk Support. If you have a current Splunk Enterprise Support entitlement, Splunk will provide best-effort support for cases involving this app directly, but such cases will not be subject to the Splunk Enterprise Support SLA.
This add-on can be used standalone, or it can be installed with the Cisco Security Suite umbrella apps and other Cisco Security Suite apps and add-ons to provide a single pane of glass interface and get out of box reports on Cisco ESA and other Cisco technology data.