Installation
Instructions for installing and configuring the Nozomi Networks Splunk Universal Add-on. This topic covers logging into Splunkbase, downloading the add-on, setting up accounts, configuring inputs, and managing data retrieval parameters for seamless integration with Nozomi Networks.
Procedure
- Log in to the Splunkbase website.
-
In the search field, search for Nozomi Networks.
The Nozomi Networks Universal Add-on page shows.
-
Select Download.
The Accept License Agreements page shows.
-
Accept the terms and select Agree to download.
A dialog shows.
- Select Ok.
- For an overview of the Splunk Universal Add-on, select Details.
- Select Installation.
-
In the configuration section, create an account. The account should include the
username and password, which are the key name and key token of:
- Central Management Console (CMC)
- Guardian
- Vantage
-
In the input section, configure the input to retrieve the following data from
Nozomi Networks:
- Alert
- Asset
- NodeCve
- Node
- Link
- Variable
- Session
- Add the host without (hypertext transfer protocol (HTTP) or hypertext transfer protocol secure (HTTPS)).
- Select the account that you just created.
- To specify the data retrieval starting point, use the from timestamp filter.
- To determine how many items are retrieved for every call, define the page size.
- Select Add.