Use Splunk Add-on for Symantec Endpoint Protection (SEP) to collect SEP server and client activity logs from Symantec Endpoint Protection Manager dump files and Syslog, using Splunk forwarders and Splunk Connect for Syslog. This add-on provides inputs and CIM-compatible knowledge that you can use with other Splunk Enterprise add-ons and apps. These include Splunk Enterprise Security and the Splunk App for PCI Compliance.