Skip to content

Install the Splunk Add-on for Cisco ASA in a single-instance Splunk Enterprise deployment

All add-ons are supported in a single-instance Splunk Enterprise deployment.

  1. Download the add-on at Splunkbase.
  2. In the Splunk Web home screen, click the gear icon next to Apps.
  3. Click Install app from file.
  4. Locate the downloaded file and click Upload.
  5. Restart Splunk Enterprise if prompted.
  6. Verify that the add-on appears in your list of apps and add-ons. You can also find it on the server at $SPLUNK_HOME/etc/apps/<Name_of_add-on>.

If you use separate forwarders in conjunction with your single-instance deployment, deploy the add-on to your forwarders as well.