Does Splunk Enterprise 8.2.4 60 days Eval have the same limitation with the Zscaler app and Zscaler add-on like Splunk Cloud ?
Thanks
Asif
To what limitation do you refer?
We noticed there wasn't App context option available for HTTP event collector configuration on Splunk Enterprise. It's auto configuring/pointing to Zscaler Add-On for Splunk (TA-Zscaler_CIM) context by default.
HTTP event collector configuration on our Splunk Enterprise
On Zscaler/Splunk setup guide: