Supported source types and event types
Edge Processors support OCSF conversions for specific source types and event types.
Source type | Event type | Description |
---|---|---|
box:events |
|
The For more information, see the Splunk Add-on for Box manual. |
cisco:asa |
|
The The Splunk Add-on for Cisco ASA emits |
infoblox:dhcp |
|
The The Splunk Add-on for Infoblox emits |
o365:management:activity |
|
The The Splunk Add-on for Microsoft Office 365 emits |
o365:reporting:messagetrace |
MessageTrace |
The The Splunk Add-on for Microsoft Office 365 emits |
OktaIM2:log |
|
The The Splunk Add-on for Okta Identity Cloud emits |
pan:globalprotect |
|
The The Splunk Add-on for Palo Alto Networks emits |
WinEventLog or XmlWinEventLog |
|
The The Splunk Add-on for Microsoft Windows emits these source types. For more information, see the Splunk Add-on for Microsoft Windows manual. |