Splunk Search

How to pull data into Splunk from Simple Event Correlator (SEC)?

daniel333
Builder

All,

We need to pull data from a platform called "SEC", Simple Event Correlator into Splunk. Any one familiar with this? Have any apps or experience in this matter they can share?

thanks
-Daniel

Tags (1)
0 Karma

dmaislin_splunk
Splunk Employee
Splunk Employee

SEC can produce output by executing external programs (e.g., snmptrap(1) or mail(1)), by writing to files, by sending data to TCP and UDP based servers, by calling precompiled Perl subroutines, etc. You should be able to output and send data over syslog via TCP or UDP into Splunk.

0 Karma
Get Updates on the Splunk Community!

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer at Splunk .conf24 ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...

Share Your Ideas & Meet the Lantern team at .Conf! Plus All of This Month’s New ...

Splunk Lantern is Splunk’s customer success center that provides advice from Splunk experts on valuable data ...

Combine Multiline Logs into a Single Event with SOCK: a Step-by-Step Guide for ...

Combine multiline logs into a single event with SOCK - a step-by-step guide for newbies Olga Malita The ...